rtl8188eu: update driver to v4.3.0.8_13968.20150417
[firefly-linux-kernel-4.4.55.git] / drivers / net / wireless / rockchip_wlan / rtl8188eu / core / rtw_mlme.c
1 /******************************************************************************
2  *
3  * Copyright(c) 2007 - 2011 Realtek Corporation. All rights reserved.
4  *                                        
5  * This program is free software; you can redistribute it and/or modify it
6  * under the terms of version 2 of the GNU General Public License as
7  * published by the Free Software Foundation.
8  *
9  * This program is distributed in the hope that it will be useful, but WITHOUT
10  * ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or
11  * FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License for
12  * more details.
13  *
14  * You should have received a copy of the GNU General Public License along with
15  * this program; if not, write to the Free Software Foundation, Inc.,
16  * 51 Franklin Street, Fifth Floor, Boston, MA 02110, USA
17  *
18  *
19  ******************************************************************************/
20 #define _RTW_MLME_C_
21
22 #include <drv_types.h>
23
24
25 extern void indicate_wx_scan_complete_event(_adapter *padapter);
26 extern u8 rtw_do_join(_adapter * padapter);
27
28 #ifdef CONFIG_DISABLE_MCS13TO15
29 extern unsigned char    MCS_rate_2R_MCS13TO15_OFF[16];
30 extern unsigned char    MCS_rate_2R[16];
31 #else //CONFIG_DISABLE_MCS13TO15
32 extern unsigned char    MCS_rate_2R[16];
33 #endif //CONFIG_DISABLE_MCS13TO15
34 extern unsigned char    MCS_rate_1R[16];
35
36 sint    _rtw_init_mlme_priv (_adapter* padapter)
37 {
38         sint    i;
39         u8      *pbuf;
40         struct wlan_network     *pnetwork;
41         struct mlme_priv                *pmlmepriv = &padapter->mlmepriv;
42         sint    res = _SUCCESS;
43
44 _func_enter_;
45
46         // We don't need to memset padapter->XXX to zero, because adapter is allocated by rtw_zvmalloc().
47         //_rtw_memset((u8 *)pmlmepriv, 0, sizeof(struct mlme_priv));
48
49         pmlmepriv->nic_hdl = (u8 *)padapter;
50
51         pmlmepriv->pscanned = NULL;
52         pmlmepriv->fw_state = WIFI_STATION_STATE; // Must sync with rtw_wdev_alloc() 
53                                                   // wdev->iftype = NL80211_IFTYPE_STATION
54         pmlmepriv->cur_network.network.InfrastructureMode = Ndis802_11AutoUnknown;
55         pmlmepriv->scan_mode=SCAN_ACTIVE;// 1: active, 0: pasive. Maybe someday we should rename this varable to "active_mode" (Jeff)
56
57         _rtw_spinlock_init(&(pmlmepriv->lock)); 
58         _rtw_init_queue(&(pmlmepriv->free_bss_pool));
59         _rtw_init_queue(&(pmlmepriv->scanned_queue));
60
61         set_scanned_network_val(pmlmepriv, 0);
62         
63         _rtw_memset(&pmlmepriv->assoc_ssid,0,sizeof(NDIS_802_11_SSID));
64
65         pbuf = rtw_zvmalloc(MAX_BSS_CNT * (sizeof(struct wlan_network)));
66         
67         if (pbuf == NULL){
68                 res=_FAIL;
69                 goto exit;
70         }
71         pmlmepriv->free_bss_buf = pbuf;
72                 
73         pnetwork = (struct wlan_network *)pbuf;
74         
75         for(i = 0; i < MAX_BSS_CNT; i++)
76         {               
77                 _rtw_init_listhead(&(pnetwork->list));
78
79                 rtw_list_insert_tail(&(pnetwork->list), &(pmlmepriv->free_bss_pool.queue));
80
81                 pnetwork++;
82         }
83
84         //allocate DMA-able/Non-Page memory for cmd_buf and rsp_buf
85
86         rtw_clear_scan_deny(padapter);
87
88 #ifdef CONFIG_LAYER2_ROAMING
89         #define RTW_ROAM_SCAN_RESULT_EXP_MS 5*1000
90         #define RTW_ROAM_RSSI_DIFF_TH 10
91         #define RTW_ROAM_SCAN_INTERVAL_MS 10*1000
92
93         pmlmepriv->roam_flags = 0
94                 | RTW_ROAM_ON_EXPIRED
95                 #ifdef CONFIG_LAYER2_ROAMING_RESUME
96                 | RTW_ROAM_ON_RESUME
97                 #endif
98                 #ifdef CONFIG_LAYER2_ROAMING_ACTIVE
99                 | RTW_ROAM_ACTIVE
100                 #endif
101                 ;
102
103         pmlmepriv->roam_scanr_exp_ms = RTW_ROAM_SCAN_RESULT_EXP_MS;
104         pmlmepriv->roam_rssi_diff_th = RTW_ROAM_RSSI_DIFF_TH;
105         pmlmepriv->roam_scan_int_ms = RTW_ROAM_SCAN_INTERVAL_MS;
106 #endif /* CONFIG_LAYER2_ROAMING */
107
108         rtw_init_mlme_timer(padapter);
109
110 exit:
111
112 _func_exit_;
113
114         return res;
115 }       
116
117 void rtw_mfree_mlme_priv_lock (struct mlme_priv *pmlmepriv);
118 void rtw_mfree_mlme_priv_lock (struct mlme_priv *pmlmepriv)
119 {
120         _rtw_spinlock_free(&pmlmepriv->lock);
121         _rtw_spinlock_free(&(pmlmepriv->free_bss_pool.lock));
122         _rtw_spinlock_free(&(pmlmepriv->scanned_queue.lock));
123 }
124
125 static void rtw_free_mlme_ie_data(u8 **ppie, u32 *plen)
126 {
127         if(*ppie)
128         {               
129                 rtw_mfree(*ppie, *plen);
130                 *plen = 0;
131                 *ppie=NULL;
132         }       
133 }
134
135 void rtw_free_mlme_priv_ie_data(struct mlme_priv *pmlmepriv)
136 {
137 #if defined (CONFIG_AP_MODE) && defined (CONFIG_NATIVEAP_MLME)
138         rtw_buf_free(&pmlmepriv->assoc_req, &pmlmepriv->assoc_req_len);
139         rtw_buf_free(&pmlmepriv->assoc_rsp, &pmlmepriv->assoc_rsp_len);
140         rtw_free_mlme_ie_data(&pmlmepriv->wps_beacon_ie, &pmlmepriv->wps_beacon_ie_len);
141         rtw_free_mlme_ie_data(&pmlmepriv->wps_probe_req_ie, &pmlmepriv->wps_probe_req_ie_len);
142         rtw_free_mlme_ie_data(&pmlmepriv->wps_probe_resp_ie, &pmlmepriv->wps_probe_resp_ie_len);
143         rtw_free_mlme_ie_data(&pmlmepriv->wps_assoc_resp_ie, &pmlmepriv->wps_assoc_resp_ie_len);
144         
145         rtw_free_mlme_ie_data(&pmlmepriv->p2p_beacon_ie, &pmlmepriv->p2p_beacon_ie_len);
146         rtw_free_mlme_ie_data(&pmlmepriv->p2p_probe_req_ie, &pmlmepriv->p2p_probe_req_ie_len);
147         rtw_free_mlme_ie_data(&pmlmepriv->p2p_probe_resp_ie, &pmlmepriv->p2p_probe_resp_ie_len);
148         rtw_free_mlme_ie_data(&pmlmepriv->p2p_go_probe_resp_ie, &pmlmepriv->p2p_go_probe_resp_ie_len);
149         rtw_free_mlme_ie_data(&pmlmepriv->p2p_assoc_req_ie, &pmlmepriv->p2p_assoc_req_ie_len);
150 #endif
151
152 #if defined(CONFIG_WFD) && defined(CONFIG_IOCTL_CFG80211)       
153         rtw_free_mlme_ie_data(&pmlmepriv->wfd_beacon_ie, &pmlmepriv->wfd_beacon_ie_len);
154         rtw_free_mlme_ie_data(&pmlmepriv->wfd_probe_req_ie, &pmlmepriv->wfd_probe_req_ie_len);
155         rtw_free_mlme_ie_data(&pmlmepriv->wfd_probe_resp_ie, &pmlmepriv->wfd_probe_resp_ie_len);
156         rtw_free_mlme_ie_data(&pmlmepriv->wfd_go_probe_resp_ie, &pmlmepriv->wfd_go_probe_resp_ie_len);
157         rtw_free_mlme_ie_data(&pmlmepriv->wfd_assoc_req_ie, &pmlmepriv->wfd_assoc_req_ie_len);
158 #endif
159
160 }
161
162 void _rtw_free_mlme_priv (struct mlme_priv *pmlmepriv)
163 {
164 _func_enter_;
165
166         rtw_free_mlme_priv_ie_data(pmlmepriv);
167
168         if(pmlmepriv){
169                 rtw_mfree_mlme_priv_lock (pmlmepriv);
170
171                 if (pmlmepriv->free_bss_buf) {
172                         rtw_vmfree(pmlmepriv->free_bss_buf, MAX_BSS_CNT * sizeof(struct wlan_network));
173                 }
174         }
175 _func_exit_;    
176 }
177
178 sint    _rtw_enqueue_network(_queue *queue, struct wlan_network *pnetwork)
179 {
180         _irqL irqL;
181
182 _func_enter_;   
183
184         if (pnetwork == NULL)
185                 goto exit;
186         
187         _enter_critical_bh(&queue->lock, &irqL);
188
189         rtw_list_insert_tail(&pnetwork->list, &queue->queue);
190
191         _exit_critical_bh(&queue->lock, &irqL);
192
193 exit:   
194
195 _func_exit_;            
196
197         return _SUCCESS;
198 }
199
200 /*
201 struct  wlan_network *_rtw_dequeue_network(_queue *queue)
202 {
203         _irqL irqL;
204
205         struct wlan_network *pnetwork;
206
207 _func_enter_;   
208
209         _enter_critical_bh(&queue->lock, &irqL);
210
211         if (_rtw_queue_empty(queue) == _TRUE)
212
213                 pnetwork = NULL;
214         
215         else
216         {
217                 pnetwork = LIST_CONTAINOR(get_next(&queue->queue), struct wlan_network, list);
218                 
219                 rtw_list_delete(&(pnetwork->list));
220         }
221         
222         _exit_critical_bh(&queue->lock, &irqL);
223
224 _func_exit_;            
225
226         return pnetwork;
227 }
228 */
229
230 struct  wlan_network *_rtw_alloc_network(struct mlme_priv *pmlmepriv )//(_queue *free_queue)
231 {
232         _irqL   irqL;
233         struct  wlan_network    *pnetwork;      
234         _queue *free_queue = &pmlmepriv->free_bss_pool;
235         _list* plist = NULL;
236         
237 _func_enter_;   
238
239         _enter_critical_bh(&free_queue->lock, &irqL);
240         
241         if (_rtw_queue_empty(free_queue) == _TRUE) {
242                 pnetwork=NULL;
243                 goto exit;
244         }
245         plist = get_next(&(free_queue->queue));
246         
247         pnetwork = LIST_CONTAINOR(plist , struct wlan_network, list);
248         
249         rtw_list_delete(&pnetwork->list);
250         
251         RT_TRACE(_module_rtl871x_mlme_c_, _drv_info_, ("_rtw_alloc_network: ptr=%p\n", plist));
252         pnetwork->network_type = 0;
253         pnetwork->fixed = _FALSE;
254         pnetwork->last_scanned = rtw_get_current_time();
255         pnetwork->aid=0;        
256         pnetwork->join_res=0;
257
258         pmlmepriv->num_of_scanned ++;
259         
260 exit:
261         _exit_critical_bh(&free_queue->lock, &irqL);
262
263 _func_exit_;            
264
265         return pnetwork;        
266 }
267
268 void _rtw_free_network(struct   mlme_priv *pmlmepriv ,struct wlan_network *pnetwork, u8 isfreeall)
269 {
270         u32 delta_time;
271         u32 lifetime = SCANQUEUE_LIFETIME;
272         _irqL irqL;     
273         _queue *free_queue = &(pmlmepriv->free_bss_pool);
274         
275 _func_enter_;           
276
277         if (pnetwork == NULL)
278                 goto exit;
279
280         if (pnetwork->fixed == _TRUE)
281                 goto exit;
282
283         if ( (check_fwstate(pmlmepriv, WIFI_ADHOC_MASTER_STATE)==_TRUE ) || 
284                 (check_fwstate(pmlmepriv, WIFI_ADHOC_STATE)==_TRUE ) )
285                 lifetime = 1;
286
287         if(!isfreeall)
288         {
289                 delta_time = (u32) rtw_get_passing_time_ms(pnetwork->last_scanned);
290                 if(delta_time < lifetime)// unit:msec
291                         goto exit;
292         }
293
294         _enter_critical_bh(&free_queue->lock, &irqL);
295         
296         rtw_list_delete(&(pnetwork->list));
297
298         rtw_list_insert_tail(&(pnetwork->list),&(free_queue->queue));
299                 
300         pmlmepriv->num_of_scanned --;
301         
302
303         //DBG_871X("_rtw_free_network:SSID=%s\n", pnetwork->network.Ssid.Ssid);
304         
305         _exit_critical_bh(&free_queue->lock, &irqL);
306         
307 exit:           
308         
309 _func_exit_;                    
310
311 }
312
313 void _rtw_free_network_nolock(struct    mlme_priv *pmlmepriv, struct wlan_network *pnetwork)
314 {
315
316         _queue *free_queue = &(pmlmepriv->free_bss_pool);
317
318 _func_enter_;           
319
320         if (pnetwork == NULL)
321                 goto exit;
322
323         if (pnetwork->fixed == _TRUE)
324                 goto exit;
325
326         //_enter_critical(&free_queue->lock, &irqL);
327         
328         rtw_list_delete(&(pnetwork->list));
329
330         rtw_list_insert_tail(&(pnetwork->list), get_list_head(free_queue));
331                 
332         pmlmepriv->num_of_scanned --;
333         
334         //_exit_critical(&free_queue->lock, &irqL);
335         
336 exit:           
337
338 _func_exit_;                    
339
340 }
341
342
343 /*
344         return the wlan_network with the matching addr
345
346         Shall be calle under atomic context... to avoid possible racing condition...
347 */
348 struct wlan_network *_rtw_find_network(_queue *scanned_queue, u8 *addr)
349 {
350
351         //_irqL irqL;
352         _list   *phead, *plist;
353         struct  wlan_network *pnetwork = NULL;
354         u8 zero_addr[ETH_ALEN] = {0,0,0,0,0,0};
355         
356 _func_enter_;   
357
358         if(_rtw_memcmp(zero_addr, addr, ETH_ALEN)){
359                 pnetwork=NULL;
360                 goto exit;
361         }
362         
363         //_enter_critical_bh(&scanned_queue->lock, &irqL);
364         
365         phead = get_list_head(scanned_queue);
366         plist = get_next(phead);
367          
368         while (plist != phead)
369        {
370                 pnetwork = LIST_CONTAINOR(plist, struct wlan_network ,list);
371
372                 if (_rtw_memcmp(addr, pnetwork->network.MacAddress, ETH_ALEN) == _TRUE)
373                         break;
374                 
375                 plist = get_next(plist);
376         }
377
378         if(plist == phead)
379                 pnetwork = NULL;
380
381         //_exit_critical_bh(&scanned_queue->lock, &irqL);
382         
383 exit:           
384         
385 _func_exit_;            
386
387         return pnetwork;
388         
389 }
390
391
392 void _rtw_free_network_queue(_adapter *padapter, u8 isfreeall)
393 {
394         _irqL irqL;
395         _list *phead, *plist;
396         struct wlan_network *pnetwork;
397         struct mlme_priv* pmlmepriv = &padapter->mlmepriv;
398         _queue *scanned_queue = &pmlmepriv->scanned_queue;
399
400 _func_enter_;   
401         
402
403         _enter_critical_bh(&scanned_queue->lock, &irqL);
404
405         phead = get_list_head(scanned_queue);
406         plist = get_next(phead);
407
408         while (rtw_end_of_queue_search(phead, plist) == _FALSE)
409         {
410
411                 pnetwork = LIST_CONTAINOR(plist, struct wlan_network, list);
412
413                 plist = get_next(plist);
414
415                 _rtw_free_network(pmlmepriv,pnetwork, isfreeall);
416                 
417         }
418
419         _exit_critical_bh(&scanned_queue->lock, &irqL);
420         
421 _func_exit_;            
422
423 }
424
425
426
427
428 sint rtw_if_up(_adapter *padapter)      {
429
430         sint res;
431 _func_enter_;           
432
433         if( padapter->bDriverStopped || padapter->bSurpriseRemoved ||
434                 (check_fwstate(&padapter->mlmepriv, _FW_LINKED)== _FALSE)){             
435                 RT_TRACE(_module_rtl871x_mlme_c_, _drv_info_, ("rtw_if_up:bDriverStopped(%d) OR bSurpriseRemoved(%d)", padapter->bDriverStopped, padapter->bSurpriseRemoved));  
436                 res=_FALSE;
437         }
438         else
439                 res=  _TRUE;
440         
441 _func_exit_;
442         return res;
443 }
444
445
446 void rtw_generate_random_ibss(u8* pibss)
447 {
448         u32     curtime = rtw_get_current_time();
449
450 _func_enter_;
451         pibss[0] = 0x02;  //in ad-hoc mode bit1 must set to 1
452         pibss[1] = 0x11;
453         pibss[2] = 0x87;
454         pibss[3] = (u8)(curtime & 0xff) ;//p[0];
455         pibss[4] = (u8)((curtime>>8) & 0xff) ;//p[1];
456         pibss[5] = (u8)((curtime>>16) & 0xff) ;//p[2];
457 _func_exit_;
458         return;
459 }
460
461 u8 *rtw_get_capability_from_ie(u8 *ie)
462 {
463         return (ie + 8 + 2);
464 }
465
466
467 u16 rtw_get_capability(WLAN_BSSID_EX *bss)
468 {
469         u16     val;
470 _func_enter_;   
471
472         _rtw_memcpy((u8 *)&val, rtw_get_capability_from_ie(bss->IEs), 2); 
473
474 _func_exit_;            
475         return le16_to_cpu(val);
476 }
477
478 u8 *rtw_get_timestampe_from_ie(u8 *ie)
479 {
480         return (ie + 0);        
481 }
482
483 u8 *rtw_get_beacon_interval_from_ie(u8 *ie)
484 {
485         return (ie + 8);        
486 }
487
488
489 int     rtw_init_mlme_priv (_adapter *padapter)//(struct        mlme_priv *pmlmepriv)
490 {
491         int     res;
492 _func_enter_;   
493         res = _rtw_init_mlme_priv(padapter);// (pmlmepriv);
494 _func_exit_;    
495         return res;
496 }
497
498 void rtw_free_mlme_priv (struct mlme_priv *pmlmepriv)
499 {
500 _func_enter_;
501         RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("rtw_free_mlme_priv\n"));
502         _rtw_free_mlme_priv (pmlmepriv);
503 _func_exit_;    
504 }
505
506 int     rtw_enqueue_network(_queue *queue, struct wlan_network *pnetwork);
507 int     rtw_enqueue_network(_queue *queue, struct wlan_network *pnetwork)
508 {
509         int     res;
510 _func_enter_;           
511         res = _rtw_enqueue_network(queue, pnetwork);
512 _func_exit_;            
513         return res;
514 }
515
516 /*
517 static struct   wlan_network *rtw_dequeue_network(_queue *queue)
518 {
519         struct wlan_network *pnetwork;
520 _func_enter_;           
521         pnetwork = _rtw_dequeue_network(queue);
522 _func_exit_;            
523         return pnetwork;
524 }
525 */
526
527 struct  wlan_network *rtw_alloc_network(struct  mlme_priv *pmlmepriv );
528 struct  wlan_network *rtw_alloc_network(struct  mlme_priv *pmlmepriv )//(_queue *free_queue)
529 {
530         struct  wlan_network    *pnetwork;
531 _func_enter_;                   
532         pnetwork = _rtw_alloc_network(pmlmepriv);
533 _func_exit_;                    
534         return pnetwork;
535 }
536
537 void rtw_free_network(struct mlme_priv *pmlmepriv, struct       wlan_network *pnetwork, u8 is_freeall);
538 void rtw_free_network(struct mlme_priv *pmlmepriv, struct       wlan_network *pnetwork, u8 is_freeall)//(struct wlan_network *pnetwork, _queue  *free_queue)
539 {
540 _func_enter_;           
541         RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("rtw_free_network==> ssid = %s \n\n" , pnetwork->network.Ssid.Ssid));
542         _rtw_free_network(pmlmepriv, pnetwork, is_freeall);
543 _func_exit_;            
544 }
545
546 void rtw_free_network_nolock(struct mlme_priv *pmlmepriv, struct wlan_network *pnetwork );
547 void rtw_free_network_nolock(struct mlme_priv *pmlmepriv, struct wlan_network *pnetwork )
548 {
549 _func_enter_;           
550         //RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("rtw_free_network==> ssid = %s \n\n" , pnetwork->network.Ssid.Ssid));
551         _rtw_free_network_nolock(pmlmepriv, pnetwork);
552 _func_exit_;            
553 }
554
555
556 void rtw_free_network_queue(_adapter* dev, u8 isfreeall)
557 {
558 _func_enter_;           
559         _rtw_free_network_queue(dev, isfreeall);
560 _func_exit_;                    
561 }
562
563 /*
564         return the wlan_network with the matching addr
565
566         Shall be calle under atomic context... to avoid possible racing condition...
567 */
568 struct  wlan_network *rtw_find_network(_queue *scanned_queue, u8 *addr)
569 {
570         struct  wlan_network *pnetwork = _rtw_find_network(scanned_queue, addr);
571
572         return pnetwork;
573 }
574
575 int rtw_is_same_ibss(_adapter *adapter, struct wlan_network *pnetwork)
576 {
577         int ret=_TRUE;
578         struct security_priv *psecuritypriv = &adapter->securitypriv;
579
580         if ( (psecuritypriv->dot11PrivacyAlgrthm != _NO_PRIVACY_ ) &&
581                     ( pnetwork->network.Privacy == 0 ) )
582         {
583                 ret=_FALSE;
584         }
585         else if((psecuritypriv->dot11PrivacyAlgrthm == _NO_PRIVACY_ ) &&
586                  ( pnetwork->network.Privacy == 1 ) )
587         {
588                 ret=_FALSE;
589         }
590         else
591         {
592                 ret=_TRUE;
593         }
594         
595         return ret;
596         
597 }
598
599 inline int is_same_ess(WLAN_BSSID_EX *a, WLAN_BSSID_EX *b)
600 {
601         //RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("(%s,%d)(%s,%d)\n",
602         //              a->Ssid.Ssid,a->Ssid.SsidLength,b->Ssid.Ssid,b->Ssid.SsidLength));
603         return (a->Ssid.SsidLength == b->Ssid.SsidLength) 
604                 &&  _rtw_memcmp(a->Ssid.Ssid, b->Ssid.Ssid, a->Ssid.SsidLength)==_TRUE;
605 }
606
607 int is_same_network(WLAN_BSSID_EX *src, WLAN_BSSID_EX *dst, u8 feature)
608 {
609          u16 s_cap, d_cap;
610          
611 _func_enter_;   
612
613         if(rtw_bug_check(dst, src, &s_cap, &d_cap)==_FALSE)
614                         return _FALSE;
615
616         _rtw_memcpy((u8 *)&s_cap, rtw_get_capability_from_ie(src->IEs), 2);
617         _rtw_memcpy((u8 *)&d_cap, rtw_get_capability_from_ie(dst->IEs), 2);
618
619         
620         s_cap = le16_to_cpu(s_cap);
621         d_cap = le16_to_cpu(d_cap);
622         
623 _func_exit_;                    
624
625 #ifdef CONFIG_P2P
626         if ((feature == 1) && // 1: P2P supported
627                 (_rtw_memcmp(src->MacAddress, dst->MacAddress, ETH_ALEN) == _TRUE)
628                 ) {
629                 return _TRUE;
630         }
631 #endif
632
633         return ((src->Ssid.SsidLength == dst->Ssid.SsidLength) &&
634                 //      (src->Configuration.DSConfig == dst->Configuration.DSConfig) &&
635                         ( (_rtw_memcmp(src->MacAddress, dst->MacAddress, ETH_ALEN)) == _TRUE) &&
636                         ( (_rtw_memcmp(src->Ssid.Ssid, dst->Ssid.Ssid, src->Ssid.SsidLength)) == _TRUE) &&
637                         ((s_cap & WLAN_CAPABILITY_IBSS) == 
638                         (d_cap & WLAN_CAPABILITY_IBSS)) &&
639                         ((s_cap & WLAN_CAPABILITY_BSS) == 
640                         (d_cap & WLAN_CAPABILITY_BSS)));
641         
642 }
643
644 struct wlan_network *_rtw_find_same_network(_queue *scanned_queue, struct wlan_network *network)
645 {
646         _list *phead, *plist;
647         struct wlan_network *found = NULL;
648
649         phead = get_list_head(scanned_queue);
650         plist = get_next(phead);
651
652         while (plist != phead) {
653                 found = LIST_CONTAINOR(plist, struct wlan_network ,list);
654
655                 if (is_same_network(&network->network, &found->network,0))
656                         break;
657
658                 plist = get_next(plist);
659         }
660
661         if(plist == phead)
662                 found = NULL;
663 exit:           
664         return found;
665 }
666
667 struct wlan_network *rtw_find_same_network(_queue *scanned_queue, struct wlan_network *network)
668 {
669         _irqL irqL;
670         struct wlan_network *found = NULL;
671
672         if (scanned_queue == NULL || network == NULL)
673                 goto exit;      
674
675         _enter_critical_bh(&scanned_queue->lock, &irqL);
676         found = _rtw_find_same_network(scanned_queue, network);
677         _exit_critical_bh(&scanned_queue->lock, &irqL);
678
679 exit:
680         return found;
681 }
682
683 struct  wlan_network    * rtw_get_oldest_wlan_network(_queue *scanned_queue)
684 {
685         _list   *plist, *phead;
686
687         
688         struct  wlan_network    *pwlan = NULL;
689         struct  wlan_network    *oldest = NULL;
690 _func_enter_;           
691         phead = get_list_head(scanned_queue);
692         
693         plist = get_next(phead);
694
695         while(1)
696         {
697                 
698                 if (rtw_end_of_queue_search(phead,plist)== _TRUE)
699                         break;
700                 
701                 pwlan= LIST_CONTAINOR(plist, struct wlan_network, list);
702
703                 if(pwlan->fixed!=_TRUE)
704                 {               
705                         if (oldest == NULL ||time_after(oldest->last_scanned, pwlan->last_scanned))
706                                 oldest = pwlan;
707                 }
708                 
709                 plist = get_next(plist);
710         }
711 _func_exit_;            
712         return oldest;
713         
714 }
715
716 void update_network(WLAN_BSSID_EX *dst, WLAN_BSSID_EX *src,
717         _adapter * padapter, bool update_ie)
718 {
719         u8 ss_ori = dst->PhyInfo.SignalStrength;
720         u8 sq_ori = dst->PhyInfo.SignalQuality;
721         long rssi_ori = dst->Rssi;
722
723         u8 ss_smp = src->PhyInfo.SignalStrength;
724         u8 sq_smp = src->PhyInfo.SignalQuality;
725         long rssi_smp = src->Rssi;
726
727         u8 ss_final;
728         u8 sq_final;
729         long rssi_final;
730
731 _func_enter_;           
732
733 #ifdef CONFIG_ANTENNA_DIVERSITY
734         rtw_hal_antdiv_rssi_compared(padapter, dst, src); //this will update src.Rssi, need consider again
735 #endif
736
737         #if defined(DBG_RX_SIGNAL_DISPLAY_SSID_MONITORED) && 1
738         if(strcmp(dst->Ssid.Ssid, DBG_RX_SIGNAL_DISPLAY_SSID_MONITORED) == 0) {
739                 DBG_871X(FUNC_ADPT_FMT" %s("MAC_FMT", ch%u) ss_ori:%3u, sq_ori:%3u, rssi_ori:%3ld, ss_smp:%3u, sq_smp:%3u, rssi_smp:%3ld\n"
740                         , FUNC_ADPT_ARG(padapter)
741                         , src->Ssid.Ssid, MAC_ARG(src->MacAddress), src->Configuration.DSConfig
742                         ,ss_ori, sq_ori, rssi_ori
743                         ,ss_smp, sq_smp, rssi_smp
744                 );
745         }
746         #endif
747
748         /* The rule below is 1/5 for sample value, 4/5 for history value */
749         if (check_fwstate(&padapter->mlmepriv, _FW_LINKED) && is_same_network(&(padapter->mlmepriv.cur_network.network), src, 0)) {
750                 /* Take the recvpriv's value for the connected AP*/
751                 ss_final = padapter->recvpriv.signal_strength;
752                 sq_final = padapter->recvpriv.signal_qual;
753                 /* the rssi value here is undecorated, and will be used for antenna diversity */
754                 if(sq_smp != 101) /* from the right channel */
755                         rssi_final = (src->Rssi+dst->Rssi*4)/5;
756                 else
757                         rssi_final = rssi_ori;
758         }
759         else {
760                 if(sq_smp != 101) { /* from the right channel */
761                         ss_final = ((u32)(src->PhyInfo.SignalStrength)+(u32)(dst->PhyInfo.SignalStrength)*4)/5;
762                         sq_final = ((u32)(src->PhyInfo.SignalQuality)+(u32)(dst->PhyInfo.SignalQuality)*4)/5;
763                         rssi_final = (src->Rssi+dst->Rssi*4)/5;
764                 } else {
765                         /* bss info not receving from the right channel, use the original RX signal infos */
766                         ss_final = dst->PhyInfo.SignalStrength;
767                         sq_final = dst->PhyInfo.SignalQuality;
768                         rssi_final = dst->Rssi;
769                 }
770                 
771         }
772
773         if (update_ie) {
774                 dst->Reserved[0] = src->Reserved[0];
775                 dst->Reserved[1] = src->Reserved[1];
776                 _rtw_memcpy((u8 *)dst, (u8 *)src, get_WLAN_BSSID_EX_sz(src));
777         }
778
779         dst->PhyInfo.SignalStrength = ss_final;
780         dst->PhyInfo.SignalQuality = sq_final;
781         dst->Rssi = rssi_final;
782
783         #if defined(DBG_RX_SIGNAL_DISPLAY_SSID_MONITORED) && 1
784         if(strcmp(dst->Ssid.Ssid, DBG_RX_SIGNAL_DISPLAY_SSID_MONITORED) == 0) {
785                 DBG_871X(FUNC_ADPT_FMT" %s("MAC_FMT"), SignalStrength:%u, SignalQuality:%u, RawRSSI:%ld\n"
786                         , FUNC_ADPT_ARG(padapter)
787                         , dst->Ssid.Ssid, MAC_ARG(dst->MacAddress), dst->PhyInfo.SignalStrength, dst->PhyInfo.SignalQuality, dst->Rssi);
788         }
789         #endif
790
791 #if 0 // old codes, may be useful one day...
792 //      DBG_871X("update_network: rssi=0x%lx dst->Rssi=%d ,dst->Rssi=0x%lx , src->Rssi=0x%lx",(dst->Rssi+src->Rssi)/2,dst->Rssi,dst->Rssi,src->Rssi);
793         if (check_fwstate(&padapter->mlmepriv, _FW_LINKED) && is_same_network(&(padapter->mlmepriv.cur_network.network), src))
794         {
795         
796                 //DBG_871X("b:ssid=%s update_network: src->rssi=0x%d padapter->recvpriv.ui_rssi=%d\n",src->Ssid.Ssid,src->Rssi,padapter->recvpriv.signal);
797                 if(padapter->recvpriv.signal_qual_data.total_num++ >= PHY_LINKQUALITY_SLID_WIN_MAX)
798                 {
799                       padapter->recvpriv.signal_qual_data.total_num = PHY_LINKQUALITY_SLID_WIN_MAX;
800                       last_evm = padapter->recvpriv.signal_qual_data.elements[padapter->recvpriv.signal_qual_data.index];
801                       padapter->recvpriv.signal_qual_data.total_val -= last_evm;
802                 }
803                 padapter->recvpriv.signal_qual_data.total_val += query_rx_pwr_percentage(src->Rssi);
804
805                 padapter->recvpriv.signal_qual_data.elements[padapter->recvpriv.signal_qual_data.index++] = query_rx_pwr_percentage(src->Rssi);
806                 if(padapter->recvpriv.signal_qual_data.index >= PHY_LINKQUALITY_SLID_WIN_MAX)
807                        padapter->recvpriv.signal_qual_data.index = 0;
808
809                 //DBG_871X("Total SQ=%d  pattrib->signal_qual= %d\n", padapter->recvpriv.signal_qual_data.total_val, src->Rssi);
810
811                 // <1> Showed on UI for user,in percentage.
812                 tmpVal = padapter->recvpriv.signal_qual_data.total_val/padapter->recvpriv.signal_qual_data.total_num;
813                 padapter->recvpriv.signal=(u8)tmpVal;//Link quality
814
815                 src->Rssi= translate_percentage_to_dbm(padapter->recvpriv.signal) ;
816         }
817         else{
818 //      DBG_871X("ELSE:ssid=%s update_network: src->rssi=0x%d dst->rssi=%d\n",src->Ssid.Ssid,src->Rssi,dst->Rssi);
819                 src->Rssi=(src->Rssi +dst->Rssi)/2;//dBM
820         }       
821
822 //      DBG_871X("a:update_network: src->rssi=0x%d padapter->recvpriv.ui_rssi=%d\n",src->Rssi,padapter->recvpriv.signal);
823
824 #endif
825
826 _func_exit_;            
827 }
828
829 static void update_current_network(_adapter *adapter, WLAN_BSSID_EX *pnetwork)
830 {
831         struct  mlme_priv       *pmlmepriv = &(adapter->mlmepriv);
832         
833 _func_enter_;           
834
835         rtw_bug_check(&(pmlmepriv->cur_network.network), 
836                 &(pmlmepriv->cur_network.network), 
837                 &(pmlmepriv->cur_network.network), 
838                 &(pmlmepriv->cur_network.network));
839
840         if ( (check_fwstate(pmlmepriv, _FW_LINKED)== _TRUE) && (is_same_network(&(pmlmepriv->cur_network.network), pnetwork, 0)))
841         {
842                 //RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,"Same Network\n");
843
844                 //if(pmlmepriv->cur_network.network.IELength<= pnetwork->IELength)
845                 {
846                         update_network(&(pmlmepriv->cur_network.network), pnetwork,adapter, _TRUE);
847                         rtw_update_protection(adapter, (pmlmepriv->cur_network.network.IEs) + sizeof (NDIS_802_11_FIXED_IEs), 
848                                                                         pmlmepriv->cur_network.network.IELength);
849                 }
850         }
851
852 _func_exit_;                    
853
854 }
855
856
857 /*
858
859 Caller must hold pmlmepriv->lock first.
860
861
862 */
863 void rtw_update_scanned_network(_adapter *adapter, WLAN_BSSID_EX *target)
864 {
865         _irqL irqL;
866         _list   *plist, *phead;
867         ULONG   bssid_ex_sz;
868         struct mlme_priv        *pmlmepriv = &(adapter->mlmepriv);
869         struct mlme_ext_priv    *pmlmeext = &(adapter->mlmeextpriv);
870         struct wifidirect_info *pwdinfo= &(adapter->wdinfo);    
871         _queue  *queue  = &(pmlmepriv->scanned_queue);
872         struct wlan_network     *pnetwork = NULL;
873         struct wlan_network     *oldest = NULL;
874         int target_find = 0;
875         u8 feature = 0;    
876
877 _func_enter_;
878
879         _enter_critical_bh(&queue->lock, &irqL);
880         phead = get_list_head(queue);
881         plist = get_next(phead);
882
883 #ifdef CONFIG_P2P
884         if (!rtw_p2p_chk_state(pwdinfo, P2P_STATE_NONE))
885                 feature = 1; // p2p enable
886 #endif
887
888         while(1)
889         {
890                 if (rtw_end_of_queue_search(phead,plist)== _TRUE)
891                         break;
892
893                 pnetwork = LIST_CONTAINOR(plist, struct wlan_network, list);
894
895                 rtw_bug_check(pnetwork, pnetwork, pnetwork, pnetwork);
896
897 #ifdef CONFIG_P2P
898                 if (!rtw_p2p_chk_state(&(adapter->wdinfo), P2P_STATE_NONE) &&
899                         (_rtw_memcmp(pnetwork->network.MacAddress, target->MacAddress, ETH_ALEN) == _TRUE))
900                 {
901                         target_find = 1;
902                         break;
903                 }
904 #endif
905
906                 if (is_same_network(&(pnetwork->network), target, feature))
907                 {
908                         target_find = 1;
909                         break;
910                 }
911
912                 if (rtw_roam_flags(adapter)) {
913                         /* TODO: don't  select netowrk in the same ess as oldest if it's new enough*/
914                 }
915
916                 if (oldest == NULL || time_after(oldest->last_scanned, pnetwork->last_scanned))
917                         oldest = pnetwork;
918
919                 plist = get_next(plist);
920
921         }
922         
923         
924         /* If we didn't find a match, then get a new network slot to initialize
925          * with this beacon's information */
926         //if (rtw_end_of_queue_search(phead,plist)== _TRUE) {
927         if (!target_find) {             
928                 if (_rtw_queue_empty(&(pmlmepriv->free_bss_pool)) == _TRUE) {
929                         /* If there are no more slots, expire the oldest */
930                         //list_del_init(&oldest->list);
931                         pnetwork = oldest;
932                         if(pnetwork==NULL){ 
933                                 RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("\n\n\nsomething wrong here\n\n\n"));
934                                 goto exit;
935                         }
936 #ifdef CONFIG_ANTENNA_DIVERSITY
937                         //target->PhyInfo.Optimum_antenna = pHalData->CurAntenna;//optimum_antenna=>For antenna diversity
938                         rtw_hal_get_def_var(adapter, HAL_DEF_CURRENT_ANTENNA, &(target->PhyInfo.Optimum_antenna));
939 #endif
940                         _rtw_memcpy(&(pnetwork->network), target,  get_WLAN_BSSID_EX_sz(target));
941                         //pnetwork->last_scanned = rtw_get_current_time();
942                         // variable initialize
943                         pnetwork->fixed = _FALSE;
944                         pnetwork->last_scanned = rtw_get_current_time();
945
946                         pnetwork->network_type = 0;     
947                         pnetwork->aid=0;                
948                         pnetwork->join_res=0;
949
950                         /* bss info not receving from the right channel */
951                         if (pnetwork->network.PhyInfo.SignalQuality == 101)
952                                 pnetwork->network.PhyInfo.SignalQuality = 0;
953                 }
954                 else {
955                         /* Otherwise just pull from the free list */
956
957                         pnetwork = rtw_alloc_network(pmlmepriv); // will update scan_time
958
959                         if(pnetwork==NULL){ 
960                                 RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("\n\n\nsomething wrong here\n\n\n"));
961                                 goto exit;
962                         }
963
964                         bssid_ex_sz = get_WLAN_BSSID_EX_sz(target);
965                         target->Length = bssid_ex_sz;
966 #ifdef CONFIG_ANTENNA_DIVERSITY
967                         //target->PhyInfo.Optimum_antenna = pHalData->CurAntenna;
968                         rtw_hal_get_def_var(adapter, HAL_DEF_CURRENT_ANTENNA, &(target->PhyInfo.Optimum_antenna));
969 #endif
970                         _rtw_memcpy(&(pnetwork->network), target, bssid_ex_sz );
971
972                         pnetwork->last_scanned = rtw_get_current_time();
973
974                         /* bss info not receving from the right channel */
975                         if (pnetwork->network.PhyInfo.SignalQuality == 101)
976                                 pnetwork->network.PhyInfo.SignalQuality = 0;
977
978                         rtw_list_insert_tail(&(pnetwork->list),&(queue->queue)); 
979
980                 }
981         }
982         else {
983                 /* we have an entry and we are going to update it. But this entry may
984                  * be already expired. In this case we do the same as we found a new 
985                  * net and call the new_net handler
986                  */
987                 bool update_ie = _TRUE;
988
989                 pnetwork->last_scanned = rtw_get_current_time();
990
991                 //target.Reserved[0]==1, means that scaned network is a bcn frame.
992                 if((pnetwork->network.IELength>target->IELength) && (target->Reserved[0]==1))
993                         update_ie = _FALSE;
994
995                 // probe resp(3) > beacon(1) > probe req(2)
996                 if ((target->Reserved[0] != 2) &&
997                         (target->Reserved[0] >= pnetwork->network.Reserved[0])
998                         ) {
999                         update_ie = _TRUE;
1000                 }
1001                 else {
1002                         update_ie = _FALSE;
1003                 }
1004
1005                 update_network(&(pnetwork->network), target,adapter, update_ie);
1006         }
1007
1008 exit:
1009         _exit_critical_bh(&queue->lock, &irqL);
1010
1011 _func_exit_;
1012 }
1013
1014 void rtw_add_network(_adapter *adapter, WLAN_BSSID_EX *pnetwork);
1015 void rtw_add_network(_adapter *adapter, WLAN_BSSID_EX *pnetwork)
1016 {
1017         _irqL irqL;
1018         struct  mlme_priv       *pmlmepriv = &(((_adapter *)adapter)->mlmepriv);
1019         //_queue        *queue  = &(pmlmepriv->scanned_queue);
1020
1021 _func_enter_;           
1022
1023         //_enter_critical_bh(&queue->lock, &irqL);
1024
1025         #if defined(CONFIG_P2P) && defined(CONFIG_P2P_REMOVE_GROUP_INFO)
1026         rtw_WLAN_BSSID_EX_remove_p2p_attr(pnetwork, P2P_ATTR_GROUP_INFO);
1027         #endif
1028         
1029         update_current_network(adapter, pnetwork);
1030         
1031         rtw_update_scanned_network(adapter, pnetwork);
1032
1033         //_exit_critical_bh(&queue->lock, &irqL);
1034         
1035 _func_exit_;            
1036 }
1037
1038 //select the desired network based on the capability of the (i)bss.
1039 // check items: (1) security
1040 //                         (2) network_type
1041 //                         (3) WMM
1042 //                         (4) HT
1043 //                     (5) others
1044 int rtw_is_desired_network(_adapter *adapter, struct wlan_network *pnetwork);
1045 int rtw_is_desired_network(_adapter *adapter, struct wlan_network *pnetwork)
1046 {
1047         struct security_priv *psecuritypriv = &adapter->securitypriv;
1048         struct mlme_priv *pmlmepriv = &adapter->mlmepriv;
1049         u32 desired_encmode;
1050         u32 privacy;
1051
1052         //u8 wps_ie[512];
1053         uint wps_ielen;
1054
1055         int bselected = _TRUE;
1056         
1057         desired_encmode = psecuritypriv->ndisencryptstatus;
1058         privacy = pnetwork->network.Privacy;
1059
1060         if(check_fwstate(pmlmepriv, WIFI_UNDER_WPS))
1061         {
1062                 if(rtw_get_wps_ie(pnetwork->network.IEs+_FIXED_IE_LENGTH_, pnetwork->network.IELength-_FIXED_IE_LENGTH_, NULL, &wps_ielen)!=NULL)
1063                 {
1064                         return _TRUE;
1065                 }
1066                 else
1067                 {       
1068                         return _FALSE;
1069                 }       
1070         }
1071         if (adapter->registrypriv.wifi_spec == 1) //for  correct flow of 8021X  to do....
1072         {
1073                 u8 *p=NULL;
1074                 uint ie_len=0;
1075
1076                 if ((desired_encmode == Ndis802_11EncryptionDisabled) && (privacy != 0))
1077                     bselected = _FALSE;
1078
1079                 if ( psecuritypriv->ndisauthtype == Ndis802_11AuthModeWPA2PSK) {
1080                         p = rtw_get_ie(pnetwork->network.IEs + _BEACON_IE_OFFSET_, _RSN_IE_2_, &ie_len, (pnetwork->network.IELength - _BEACON_IE_OFFSET_));
1081                         if (p && ie_len>0) {
1082                                 bselected = _TRUE;
1083                         } else {
1084                                 bselected = _FALSE;
1085                         }
1086                 }
1087         }
1088         
1089
1090         if ((desired_encmode != Ndis802_11EncryptionDisabled) && (privacy == 0)) {
1091                 DBG_871X("desired_encmode: %d, privacy: %d\n", desired_encmode, privacy);
1092                 bselected = _FALSE;
1093         }
1094
1095         if(check_fwstate(pmlmepriv, WIFI_ADHOC_STATE) == _TRUE)
1096         {
1097                 if(pnetwork->network.InfrastructureMode != pmlmepriv->cur_network.network.InfrastructureMode)
1098                         bselected = _FALSE;
1099         }       
1100                 
1101
1102         return bselected;
1103 }
1104
1105 /* TODO: Perry : For Power Management */
1106 void rtw_atimdone_event_callback(_adapter       *adapter , u8 *pbuf)
1107 {
1108
1109 _func_enter_;           
1110         RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("receive atimdone_evet\n"));        
1111 _func_exit_;                    
1112         return; 
1113 }
1114
1115
1116 void rtw_survey_event_callback(_adapter *adapter, u8 *pbuf)
1117 {
1118         _irqL  irqL;
1119         u32 len;
1120         WLAN_BSSID_EX *pnetwork;
1121         struct  mlme_priv       *pmlmepriv = &(adapter->mlmepriv);
1122
1123 _func_enter_;           
1124
1125         pnetwork = (WLAN_BSSID_EX *)pbuf;
1126
1127         RT_TRACE(_module_rtl871x_mlme_c_,_drv_info_,("rtw_survey_event_callback, ssid=%s\n",  pnetwork->Ssid.Ssid));
1128
1129 #ifdef CONFIG_RTL8712
1130         //endian_convert
1131         pnetwork->Length = le32_to_cpu(pnetwork->Length);
1132         pnetwork->Ssid.SsidLength = le32_to_cpu(pnetwork->Ssid.SsidLength);     
1133         pnetwork->Privacy =le32_to_cpu( pnetwork->Privacy);
1134         pnetwork->Rssi = le32_to_cpu(pnetwork->Rssi);
1135         pnetwork->NetworkTypeInUse =le32_to_cpu(pnetwork->NetworkTypeInUse);    
1136         pnetwork->Configuration.ATIMWindow = le32_to_cpu(pnetwork->Configuration.ATIMWindow);
1137         pnetwork->Configuration.BeaconPeriod = le32_to_cpu(pnetwork->Configuration.BeaconPeriod);
1138         pnetwork->Configuration.DSConfig =le32_to_cpu(pnetwork->Configuration.DSConfig);
1139         pnetwork->Configuration.FHConfig.DwellTime=le32_to_cpu(pnetwork->Configuration.FHConfig.DwellTime);
1140         pnetwork->Configuration.FHConfig.HopPattern=le32_to_cpu(pnetwork->Configuration.FHConfig.HopPattern);
1141         pnetwork->Configuration.FHConfig.HopSet=le32_to_cpu(pnetwork->Configuration.FHConfig.HopSet);
1142         pnetwork->Configuration.FHConfig.Length=le32_to_cpu(pnetwork->Configuration.FHConfig.Length);   
1143         pnetwork->Configuration.Length = le32_to_cpu(pnetwork->Configuration.Length);
1144         pnetwork->InfrastructureMode = le32_to_cpu(pnetwork->InfrastructureMode);
1145         pnetwork->IELength = le32_to_cpu(pnetwork->IELength);
1146 #endif  
1147
1148         len = get_WLAN_BSSID_EX_sz(pnetwork);
1149         if(len > (sizeof(WLAN_BSSID_EX)))
1150         {
1151                 RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("\n ****rtw_survey_event_callback: return a wrong bss ***\n"));
1152                 return;
1153         }
1154
1155
1156         _enter_critical_bh(&pmlmepriv->lock, &irqL);
1157
1158         // update IBSS_network 's timestamp
1159         if ((check_fwstate(pmlmepriv, WIFI_ADHOC_MASTER_STATE)) == _TRUE)
1160         {
1161                 //RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,"rtw_survey_event_callback : WIFI_ADHOC_MASTER_STATE \n\n");
1162                 if(_rtw_memcmp(&(pmlmepriv->cur_network.network.MacAddress), pnetwork->MacAddress, ETH_ALEN))
1163                 {
1164                         struct wlan_network* ibss_wlan = NULL;
1165                         _irqL   irqL;
1166                         
1167                         _rtw_memcpy(pmlmepriv->cur_network.network.IEs, pnetwork->IEs, 8);
1168                         _enter_critical_bh(&(pmlmepriv->scanned_queue.lock), &irqL);
1169                         ibss_wlan = rtw_find_network(&pmlmepriv->scanned_queue,  pnetwork->MacAddress);
1170                         if(ibss_wlan)
1171                         {
1172                                 _rtw_memcpy(ibss_wlan->network.IEs , pnetwork->IEs, 8);                 
1173                                 _exit_critical_bh(&(pmlmepriv->scanned_queue.lock), &irqL);             
1174                                 goto exit;
1175                         }
1176                         _exit_critical_bh(&(pmlmepriv->scanned_queue.lock), &irqL);
1177                 }
1178         }
1179
1180         // lock pmlmepriv->lock when you accessing network_q
1181         if ((check_fwstate(pmlmepriv, _FW_UNDER_LINKING)) == _FALSE)
1182         {               
1183                 if( pnetwork->Ssid.Ssid[0] == 0 )
1184                 {
1185                         pnetwork->Ssid.SsidLength = 0;
1186                 }       
1187                 rtw_add_network(adapter, pnetwork);
1188         }       
1189
1190 exit:   
1191                 
1192         _exit_critical_bh(&pmlmepriv->lock, &irqL);
1193
1194 _func_exit_;            
1195
1196         return; 
1197 }
1198
1199
1200
1201 void rtw_surveydone_event_callback(_adapter     *adapter, u8 *pbuf)
1202 {
1203         _irqL  irqL;
1204         u8 timer_cancelled;
1205         struct  mlme_priv       *pmlmepriv = &(adapter->mlmepriv);
1206
1207 #ifdef CONFIG_MLME_EXT
1208         mlmeext_surveydone_event_callback(adapter);
1209 #endif
1210
1211 _func_enter_;
1212
1213         _enter_critical_bh(&pmlmepriv->lock, &irqL);
1214         if (pmlmepriv->wps_probe_req_ie) {
1215                 u32 free_len = pmlmepriv->wps_probe_req_ie_len;
1216                 pmlmepriv->wps_probe_req_ie_len = 0;
1217                 rtw_mfree(pmlmepriv->wps_probe_req_ie, free_len);
1218                 pmlmepriv->wps_probe_req_ie = NULL;
1219         }
1220
1221         RT_TRACE(_module_rtl871x_mlme_c_,_drv_info_,("rtw_surveydone_event_callback: fw_state:%x\n\n", get_fwstate(pmlmepriv)));
1222
1223         if (check_fwstate(pmlmepriv,_FW_UNDER_SURVEY) == _FALSE) {
1224                 DBG_871X(FUNC_ADPT_FMT" fw_state:0x%x\n", FUNC_ADPT_ARG(adapter), get_fwstate(pmlmepriv));
1225                 //rtw_warn_on(1);
1226         }
1227
1228         _clr_fwstate_(pmlmepriv, _FW_UNDER_SURVEY);
1229
1230         _exit_critical_bh(&pmlmepriv->lock, &irqL);
1231
1232         _cancel_timer(&pmlmepriv->scan_to_timer, &timer_cancelled);
1233
1234         _enter_critical_bh(&pmlmepriv->lock, &irqL);
1235
1236         #ifdef CONFIG_NEW_SIGNAL_STAT_PROCESS
1237         rtw_set_signal_stat_timer(&adapter->recvpriv);
1238         #endif
1239
1240         if(pmlmepriv->to_join == _TRUE)
1241         {
1242                 if((check_fwstate(pmlmepriv, WIFI_ADHOC_STATE)==_TRUE) )
1243                 {
1244                         if(check_fwstate(pmlmepriv, _FW_LINKED)==_FALSE)
1245                         {
1246                                 set_fwstate(pmlmepriv, _FW_UNDER_LINKING);      
1247                                 
1248                                 if(rtw_select_and_join_from_scanned_queue(pmlmepriv)==_SUCCESS)
1249                                 {
1250                                         _set_timer(&pmlmepriv->assoc_timer, MAX_JOIN_TIMEOUT );
1251                                 }
1252                                 else    
1253                                 {
1254                                         WLAN_BSSID_EX    *pdev_network = &(adapter->registrypriv.dev_network);                  
1255                                         u8 *pibss = adapter->registrypriv.dev_network.MacAddress;
1256
1257                                         //pmlmepriv->fw_state ^= _FW_UNDER_SURVEY;//because don't set assoc_timer
1258                                         _clr_fwstate_(pmlmepriv, _FW_UNDER_SURVEY);
1259
1260                                         RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("switching to adhoc master\n"));
1261                                 
1262                                         _rtw_memset(&pdev_network->Ssid, 0, sizeof(NDIS_802_11_SSID));
1263                                         _rtw_memcpy(&pdev_network->Ssid, &pmlmepriv->assoc_ssid, sizeof(NDIS_802_11_SSID));
1264         
1265                                         rtw_update_registrypriv_dev_network(adapter);
1266                                         rtw_generate_random_ibss(pibss);
1267
1268                                         pmlmepriv->fw_state = WIFI_ADHOC_MASTER_STATE;
1269                         
1270                                         if(rtw_createbss_cmd(adapter)!=_SUCCESS)
1271                                         {
1272                                         RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("Error=>rtw_createbss_cmd status FAIL\n"));                                         
1273                                         }       
1274
1275                                         pmlmepriv->to_join = _FALSE;
1276                                 }
1277                         }
1278                 }
1279                 else
1280                 {
1281                         int s_ret;
1282                         set_fwstate(pmlmepriv, _FW_UNDER_LINKING);
1283                         pmlmepriv->to_join = _FALSE;
1284                         if(_SUCCESS == (s_ret=rtw_select_and_join_from_scanned_queue(pmlmepriv)))
1285                         {
1286                              _set_timer(&pmlmepriv->assoc_timer, MAX_JOIN_TIMEOUT);      
1287                         }
1288                         else if(s_ret == 2)//there is no need to wait for join
1289                         {
1290                                 _clr_fwstate_(pmlmepriv, _FW_UNDER_LINKING);
1291                                 rtw_indicate_connect(adapter);
1292                         }
1293                         else
1294                         {
1295                                 DBG_871X("try_to_join, but select scanning queue fail, to_roam:%d\n", rtw_to_roam(adapter));
1296
1297                                 if (rtw_to_roam(adapter) != 0) {
1298                                         if(rtw_dec_to_roam(adapter) == 0
1299                                                 || _SUCCESS != rtw_sitesurvey_cmd(adapter, &pmlmepriv->assoc_ssid, 1, NULL, 0)
1300                                         ) {
1301                                                 rtw_set_to_roam(adapter, 0);
1302 #ifdef CONFIG_INTEL_WIDI
1303                                                 if(adapter->mlmepriv.widi_state == INTEL_WIDI_STATE_ROAMING)
1304                                                 {
1305                                                         _rtw_memset(pmlmepriv->sa_ext, 0x00, L2SDTA_SERVICE_VE_LEN);
1306                                                         intel_widi_wk_cmd(adapter, INTEL_WIDI_LISTEN_WK, NULL, 0);
1307                                                         DBG_871X("change to widi listen\n");
1308                                                 }
1309 #endif // CONFIG_INTEL_WIDI
1310                                                 rtw_free_assoc_resources(adapter, 1);
1311                                                 rtw_indicate_disconnect(adapter);
1312                                         } else {
1313                                                 pmlmepriv->to_join = _TRUE;
1314                                         }
1315                                 }
1316                                 else
1317                                 {
1318                                         rtw_indicate_disconnect(adapter);
1319                                 }
1320                                 _clr_fwstate_(pmlmepriv, _FW_UNDER_LINKING);
1321                         }
1322                 }
1323         } else {
1324                 if (rtw_chk_roam_flags(adapter, RTW_ROAM_ACTIVE)) {
1325                         if (check_fwstate(pmlmepriv, WIFI_STATION_STATE)
1326                                 && check_fwstate(pmlmepriv, _FW_LINKED))
1327                         {
1328                                 if (rtw_select_roaming_candidate(pmlmepriv) == _SUCCESS) {
1329                                         receive_disconnect(adapter, pmlmepriv->cur_network.network.MacAddress
1330                                                 , WLAN_REASON_ACTIVE_ROAM);
1331                                 }
1332                         }
1333                 }
1334         }
1335         
1336         //DBG_871X("scan complete in %dms\n",rtw_get_passing_time_ms(pmlmepriv->scan_start_time));
1337
1338         _exit_critical_bh(&pmlmepriv->lock, &irqL);
1339
1340 #ifdef CONFIG_P2P_PS
1341         if (check_fwstate(pmlmepriv, _FW_LINKED) == _TRUE) {
1342                 p2p_ps_wk_cmd(adapter, P2P_PS_SCAN_DONE, 0);
1343         }
1344 #endif // CONFIG_P2P_PS
1345
1346         rtw_os_xmit_schedule(adapter);
1347 #ifdef CONFIG_CONCURRENT_MODE   
1348         rtw_os_xmit_schedule(adapter->pbuddy_adapter);
1349 #endif
1350 #ifdef CONFIG_DUALMAC_CONCURRENT
1351         dc_resume_xmit(adapter);
1352 #endif
1353
1354 #ifdef CONFIG_DRVEXT_MODULE_WSC
1355         drvext_surveydone_callback(&adapter->drvextpriv);
1356 #endif
1357
1358 #ifdef DBG_CONFIG_ERROR_DETECT
1359         {
1360                 struct mlme_ext_priv *pmlmeext = &adapter->mlmeextpriv;         
1361                 if(pmlmeext->sitesurvey_res.bss_cnt == 0){
1362                         //rtw_hal_sreset_reset(adapter);
1363                 }
1364         }
1365 #endif
1366
1367 #ifdef CONFIG_IOCTL_CFG80211
1368         rtw_cfg80211_surveydone_event_callback(adapter);
1369 #endif //CONFIG_IOCTL_CFG80211
1370
1371         rtw_indicate_scan_done(adapter, _FALSE);
1372
1373 #if defined(CONFIG_CONCURRENT_MODE) && defined(CONFIG_IOCTL_CFG80211)
1374         if (adapter->pbuddy_adapter) {
1375                 _adapter *buddy_adapter = adapter->pbuddy_adapter;
1376                 struct mlme_priv *buddy_mlme = &(buddy_adapter->mlmepriv);
1377                 struct rtw_wdev_priv *buddy_wdev_priv = adapter_wdev_data(buddy_adapter);
1378                 bool indicate_buddy_scan = _FALSE;
1379
1380                 _enter_critical_bh(&buddy_wdev_priv->scan_req_lock, &irqL);
1381                 if (buddy_wdev_priv->scan_request && buddy_mlme->scanning_via_buddy_intf == _TRUE) {
1382                         buddy_mlme->scanning_via_buddy_intf = _FALSE;
1383                         clr_fwstate(buddy_mlme, _FW_UNDER_SURVEY);
1384                         indicate_buddy_scan = _TRUE;
1385                 }
1386                 _exit_critical_bh(&buddy_wdev_priv->scan_req_lock, &irqL);
1387
1388                 if (indicate_buddy_scan == _TRUE) {
1389                         #ifdef CONFIG_IOCTL_CFG80211
1390                         rtw_cfg80211_surveydone_event_callback(buddy_adapter);
1391                         #endif
1392                         rtw_indicate_scan_done(buddy_adapter, _FALSE);
1393                 }
1394         }
1395 #endif /* CONFIG_CONCURRENT_MODE */
1396
1397 _func_exit_;    
1398
1399 }
1400
1401 void rtw_dummy_event_callback(_adapter *adapter , u8 *pbuf)
1402 {
1403
1404 }
1405
1406 void rtw_fwdbg_event_callback(_adapter *adapter , u8 *pbuf)
1407 {
1408
1409 }
1410
1411 static void free_scanqueue(struct       mlme_priv *pmlmepriv)
1412 {
1413         _irqL irqL, irqL0;
1414         _queue *free_queue = &pmlmepriv->free_bss_pool;
1415         _queue *scan_queue = &pmlmepriv->scanned_queue;
1416         _list   *plist, *phead, *ptemp;
1417         
1418 _func_enter_;           
1419         
1420         RT_TRACE(_module_rtl871x_mlme_c_, _drv_notice_, ("+free_scanqueue\n"));
1421         _enter_critical_bh(&scan_queue->lock, &irqL0);
1422         _enter_critical_bh(&free_queue->lock, &irqL);
1423
1424         phead = get_list_head(scan_queue);
1425         plist = get_next(phead);
1426
1427         while (plist != phead)
1428        {
1429                 ptemp = get_next(plist);
1430                 rtw_list_delete(plist);
1431                 rtw_list_insert_tail(plist, &free_queue->queue);
1432                 plist =ptemp;
1433                 pmlmepriv->num_of_scanned --;
1434         }
1435         
1436         _exit_critical_bh(&free_queue->lock, &irqL);
1437         _exit_critical_bh(&scan_queue->lock, &irqL0);
1438         
1439 _func_exit_;
1440 }
1441         
1442 /*
1443 *rtw_free_assoc_resources: the caller has to lock pmlmepriv->lock
1444 */
1445 void rtw_free_assoc_resources(_adapter *adapter, int lock_scanned_queue)
1446 {
1447         _irqL irqL;
1448         struct wlan_network* pwlan = NULL;
1449         struct  mlme_priv *pmlmepriv = &adapter->mlmepriv;
1450         struct  sta_priv *pstapriv = &adapter->stapriv;
1451         struct wlan_network *tgt_network = &pmlmepriv->cur_network;
1452         
1453 #ifdef CONFIG_TDLS
1454         struct tdls_info *ptdlsinfo = &adapter->tdlsinfo;
1455 #endif //CONFIG_TDLS
1456 _func_enter_;                   
1457
1458         RT_TRACE(_module_rtl871x_mlme_c_, _drv_notice_, ("+rtw_free_assoc_resources\n"));
1459         RT_TRACE(_module_rtl871x_mlme_c_, _drv_info_, ("tgt_network->network.MacAddress="MAC_FMT" ssid=%s\n",
1460                 MAC_ARG(tgt_network->network.MacAddress), tgt_network->network.Ssid.Ssid));
1461
1462         if(check_fwstate( pmlmepriv, WIFI_STATION_STATE|WIFI_AP_STATE))
1463         {
1464                 struct sta_info* psta;
1465                 
1466                 psta = rtw_get_stainfo(&adapter->stapriv, tgt_network->network.MacAddress);
1467
1468 #ifdef CONFIG_TDLS
1469                 if(ptdlsinfo->link_established == _TRUE)
1470                 {
1471                         rtw_tdls_cmd(adapter, myid(&(adapter->eeprompriv)), TDLS_RS_RCR);
1472                         rtw_reset_tdls_info(adapter);
1473                         rtw_free_all_stainfo(adapter);
1474                         //_enter_critical_bh(&(pstapriv->sta_hash_lock), &irqL);
1475                 }
1476                 else
1477 #endif //CONFIG_TDLS
1478                 {
1479                         //_enter_critical_bh(&(pstapriv->sta_hash_lock), &irqL);
1480                         rtw_free_stainfo(adapter,  psta);
1481                 }
1482
1483                 //_exit_critical_bh(&(pstapriv->sta_hash_lock), &irqL);
1484                 
1485         }
1486
1487         if(check_fwstate( pmlmepriv, WIFI_ADHOC_STATE|WIFI_ADHOC_MASTER_STATE|WIFI_AP_STATE))
1488         {
1489                 struct sta_info* psta;
1490         
1491                 rtw_free_all_stainfo(adapter);
1492
1493                 psta = rtw_get_bcmc_stainfo(adapter);
1494                 //_enter_critical_bh(&(pstapriv->sta_hash_lock), &irqL);
1495                 rtw_free_stainfo(adapter, psta);
1496                 //_exit_critical_bh(&(pstapriv->sta_hash_lock), &irqL);
1497
1498                 rtw_init_bcmc_stainfo(adapter); 
1499         }
1500
1501         if(lock_scanned_queue)
1502                 _enter_critical_bh(&(pmlmepriv->scanned_queue.lock), &irqL);
1503         
1504         pwlan = _rtw_find_same_network(&pmlmepriv->scanned_queue, tgt_network);
1505         if(pwlan)               
1506         {
1507                 pwlan->fixed = _FALSE;
1508 #ifdef CONFIG_P2P
1509                 if(!rtw_p2p_chk_state(&adapter->wdinfo, P2P_STATE_NONE))
1510                 {
1511                         u32 p2p_ielen=0;
1512                         u8  *p2p_ie;
1513                         //u16 capability;
1514                         u8 *pcap = NULL;
1515                         u32 capability_len=0;
1516                         
1517                         //DBG_871X("free disconnecting network\n");
1518                         //rtw_free_network_nolock(pmlmepriv, pwlan);
1519
1520                         if((p2p_ie=rtw_get_p2p_ie(pwlan->network.IEs+_FIXED_IE_LENGTH_, pwlan->network.IELength-_FIXED_IE_LENGTH_, NULL, &p2p_ielen)))
1521                         {                       
1522                                 pcap = rtw_get_p2p_attr_content(p2p_ie, p2p_ielen, P2P_ATTR_CAPABILITY, NULL, &capability_len);
1523                                 if(pcap && capability_len==2)
1524                                 {
1525                                         u16 cap = *(u16*)pcap ;
1526                                         *(u16*)pcap = cap&0x00ff;//clear group capability when free this network
1527                                 }
1528
1529         }       
1530
1531                         rtw_set_scan_deny(adapter, 2000);
1532                         //rtw_clear_scan_deny(adapter);
1533                         
1534                 }
1535 #endif //CONFIG_P2P
1536         }       
1537         else
1538         {
1539                 RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("rtw_free_assoc_resources : pwlan== NULL \n\n"));
1540         }
1541
1542
1543         if((check_fwstate(pmlmepriv, WIFI_ADHOC_MASTER_STATE) && (adapter->stapriv.asoc_sta_count== 1))
1544                 /*||check_fwstate(pmlmepriv, WIFI_STATION_STATE)*/)
1545         {
1546                 if (pwlan)
1547                         rtw_free_network_nolock(pmlmepriv, pwlan);
1548         }
1549
1550         if(lock_scanned_queue)
1551                 _exit_critical_bh(&(pmlmepriv->scanned_queue.lock), &irqL);
1552         
1553         adapter->securitypriv.key_mask = 0;
1554
1555 _func_exit_;    
1556         
1557 }
1558
1559 /*
1560 *rtw_indicate_connect: the caller has to lock pmlmepriv->lock
1561 */
1562 void rtw_indicate_connect(_adapter *padapter)
1563 {
1564         struct mlme_priv        *pmlmepriv = &padapter->mlmepriv;
1565         struct xmit_priv        *pxmitpriv = &padapter->xmitpriv;
1566         
1567 _func_enter_;
1568
1569         RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("+rtw_indicate_connect\n"));
1570  
1571         pmlmepriv->to_join = _FALSE;
1572
1573         if(!check_fwstate(&padapter->mlmepriv, _FW_LINKED)) 
1574         {
1575
1576 #ifdef CONFIG_SW_ANTENNA_DIVERSITY
1577                 rtw_hal_set_hwreg(padapter, HW_VAR_ANTENNA_DIVERSITY_LINK, 0);
1578 #endif
1579
1580                 set_fwstate(pmlmepriv, _FW_LINKED);
1581
1582                 rtw_led_control(padapter, LED_CTL_LINK);
1583
1584         
1585 #ifdef CONFIG_DRVEXT_MODULE
1586                 if(padapter->drvextpriv.enable_wpa)
1587                 {
1588                         indicate_l2_connect(padapter);
1589                 }
1590                 else
1591 #endif
1592                 {
1593                         rtw_os_indicate_connect(padapter);
1594                 }
1595
1596         }
1597
1598         rtw_set_to_roam(padapter, 0);
1599 #ifdef CONFIG_INTEL_WIDI
1600         if(padapter->mlmepriv.widi_state == INTEL_WIDI_STATE_ROAMING)
1601         {
1602                 _rtw_memset(pmlmepriv->sa_ext, 0x00, L2SDTA_SERVICE_VE_LEN);
1603                 intel_widi_wk_cmd(padapter, INTEL_WIDI_LISTEN_WK, NULL, 0);
1604                 DBG_871X("change to widi listen\n");
1605         }
1606 #endif // CONFIG_INTEL_WIDI
1607
1608         rtw_set_scan_deny(padapter, 3000);
1609
1610         RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("-rtw_indicate_connect: fw_state=0x%08x\n", get_fwstate(pmlmepriv)));
1611  
1612 _func_exit_;
1613
1614 }
1615
1616
1617 /*
1618 *rtw_indicate_disconnect: the caller has to lock pmlmepriv->lock
1619 */
1620 void rtw_indicate_disconnect( _adapter *padapter )
1621 {
1622         struct  mlme_priv *pmlmepriv = &padapter->mlmepriv;     
1623         struct mlme_ext_priv *pmlmeext = &(padapter->mlmeextpriv);
1624         struct mlme_ext_info *pmlmeinfo = &(pmlmeext->mlmext_info);
1625         WLAN_BSSID_EX   *cur_network = &(pmlmeinfo->network);
1626         struct sta_info *psta;
1627         struct sta_priv *pstapriv = &padapter->stapriv;
1628         u8 *wps_ie=NULL;
1629         uint wpsie_len=0;
1630
1631 _func_enter_;   
1632         
1633         RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("+rtw_indicate_disconnect\n"));
1634
1635         _clr_fwstate_(pmlmepriv, _FW_UNDER_LINKING|WIFI_UNDER_WPS);
1636
1637         // force to clear cur_network_scanned's SELECTED REGISTRAR
1638         if (pmlmepriv->cur_network_scanned) {
1639                 WLAN_BSSID_EX   *current_joined_bss = &(pmlmepriv->cur_network_scanned->network);
1640                 if (current_joined_bss) {
1641                         wps_ie=rtw_get_wps_ie(current_joined_bss->IEs +_FIXED_IE_LENGTH_,
1642                                 current_joined_bss->IELength-_FIXED_IE_LENGTH_, NULL, &wpsie_len);
1643                         if (wps_ie && wpsie_len>0) {
1644                                 u8 *attr = NULL;
1645                                 u32 attr_len;
1646                                 attr=rtw_get_wps_attr(wps_ie, wpsie_len, WPS_ATTR_SELECTED_REGISTRAR,
1647                                                        NULL, &attr_len);
1648                                 if (attr)
1649                                         *(attr + 4) = 0;
1650                         }
1651                 }
1652         }
1653
1654         if(rtw_to_roam(padapter) > 0)
1655                 _clr_fwstate_(pmlmepriv, _FW_LINKED);
1656
1657 #ifdef CONFIG_WAPI_SUPPORT
1658         psta = rtw_get_stainfo(pstapriv,cur_network->MacAddress);
1659         if (check_fwstate(pmlmepriv, WIFI_STATION_STATE))
1660         {
1661                 rtw_wapi_return_one_sta_info(padapter, psta->hwaddr);
1662         }
1663         else if (check_fwstate(pmlmepriv, WIFI_ADHOC_STATE) ||
1664                 check_fwstate(pmlmepriv, WIFI_ADHOC_MASTER_STATE))
1665         {
1666                 rtw_wapi_return_all_sta_info(padapter);
1667         }
1668 #endif
1669
1670         if(check_fwstate(&padapter->mlmepriv, _FW_LINKED) 
1671                 || (rtw_to_roam(padapter) <= 0)
1672         )
1673         {
1674                 rtw_os_indicate_disconnect(padapter);
1675
1676                 //set ips_deny_time to avoid enter IPS before LPS leave
1677                 rtw_set_ips_deny(padapter, 3000);
1678
1679               _clr_fwstate_(pmlmepriv, _FW_LINKED);
1680
1681                 rtw_led_control(padapter, LED_CTL_NO_LINK);
1682
1683                 rtw_clear_scan_deny(padapter);
1684         }
1685
1686 #ifdef CONFIG_P2P_PS
1687         p2p_ps_wk_cmd(padapter, P2P_PS_DISABLE, 1);
1688 #endif // CONFIG_P2P_PS
1689
1690 #ifdef CONFIG_LPS
1691         rtw_lps_ctrl_wk_cmd(padapter, LPS_CTRL_DISCONNECT, 1);
1692 #endif
1693
1694 #ifdef CONFIG_BEAMFORMING
1695         beamforming_wk_cmd(padapter, BEAMFORMING_CTRL_LEAVE, cur_network->MacAddress, ETH_ALEN, 1);
1696 #endif
1697
1698 _func_exit_;    
1699 }
1700
1701 inline void rtw_indicate_scan_done( _adapter *padapter, bool aborted)
1702 {
1703         DBG_871X(FUNC_ADPT_FMT"\n", FUNC_ADPT_ARG(padapter));
1704
1705         rtw_os_indicate_scan_done(padapter, aborted);
1706
1707 #ifdef CONFIG_IPS
1708         if (is_primary_adapter(padapter)
1709                 && (_FALSE == adapter_to_pwrctl(padapter)->bInSuspend)
1710                 && (check_fwstate(&padapter->mlmepriv, WIFI_ASOC_STATE|WIFI_UNDER_LINKING) == _FALSE))
1711         {
1712                 struct pwrctrl_priv *pwrpriv;
1713
1714                 pwrpriv = adapter_to_pwrctl(padapter);
1715                 rtw_set_ips_deny(padapter, 0);
1716 #ifdef CONFIG_IPS_CHECK_IN_WD
1717                 _set_timer(&padapter->mlmepriv.dynamic_chk_timer, 1);
1718 #else // !CONFIG_IPS_CHECK_IN_WD
1719                 _rtw_set_pwr_state_check_timer(pwrpriv, 1);
1720 #endif // !CONFIG_IPS_CHECK_IN_WD
1721         }
1722 #endif // CONFIG_IPS
1723 }
1724
1725 u32 rtw_scan_abort_timeout(_adapter *adapter, u32 timeout_ms)
1726 {
1727         u32 start;
1728         u32 pass_ms;
1729         struct mlme_priv *pmlmepriv = &(adapter->mlmepriv);
1730         struct mlme_ext_priv *pmlmeext = &(adapter->mlmeextpriv);
1731
1732         start = rtw_get_current_time();
1733         pmlmeext->scan_abort = _TRUE;
1734         while (check_fwstate(pmlmepriv, _FW_UNDER_SURVEY)
1735                 && rtw_get_passing_time_ms(start) <= timeout_ms) {
1736
1737                 if (adapter->bDriverStopped || adapter->bSurpriseRemoved)
1738                         break;
1739
1740                 DBG_871X(FUNC_NDEV_FMT"fw_state=_FW_UNDER_SURVEY!\n", FUNC_NDEV_ARG(adapter->pnetdev));
1741                 rtw_msleep_os(20);
1742         }
1743
1744         if (check_fwstate(pmlmepriv, _FW_UNDER_SURVEY)) {
1745                 if (!adapter->bDriverStopped && !adapter->bSurpriseRemoved)
1746                         DBG_871X(FUNC_NDEV_FMT"waiting for scan_abort time out!\n", FUNC_NDEV_ARG(adapter->pnetdev));
1747                 #ifdef CONFIG_PLATFORM_MSTAR
1748                 //_clr_fwstate_(pmlmepriv, _FW_UNDER_SURVEY);
1749                 set_survey_timer(pmlmeext, 0);
1750                 mlme_set_scan_to_timer(pmlmepriv, 50);
1751                 #endif
1752                 rtw_indicate_scan_done(adapter, _TRUE);
1753         }
1754         pmlmeext->scan_abort = _FALSE;
1755         pass_ms = rtw_get_passing_time_ms(start);
1756
1757         return pass_ms;
1758 }
1759
1760 void rtw_scan_abort_no_wait(_adapter *adapter)
1761 {
1762         struct mlme_priv *pmlmepriv = &(adapter->mlmepriv);
1763         struct mlme_ext_priv *pmlmeext = &(adapter->mlmeextpriv);
1764
1765         if (check_fwstate(pmlmepriv, _FW_UNDER_SURVEY))
1766                 pmlmeext->scan_abort = _TRUE;
1767 }
1768
1769 void rtw_scan_abort(_adapter *adapter)
1770 {
1771         rtw_scan_abort_timeout(adapter, 200);
1772 }
1773
1774 static struct sta_info *rtw_joinbss_update_stainfo(_adapter *padapter, struct wlan_network *pnetwork)
1775 {
1776         int i;
1777         struct sta_info *bmc_sta, *psta=NULL;
1778         struct recv_reorder_ctrl *preorder_ctrl;
1779         struct sta_priv *pstapriv = &padapter->stapriv;
1780         struct mlme_ext_priv    *pmlmeext = &padapter->mlmeextpriv;
1781
1782         psta = rtw_get_stainfo(pstapriv, pnetwork->network.MacAddress);
1783         if(psta==NULL) {
1784                 psta = rtw_alloc_stainfo(pstapriv, pnetwork->network.MacAddress);
1785         }
1786
1787         if(psta) //update ptarget_sta
1788         {
1789                 DBG_871X("%s\n", __FUNCTION__);
1790         
1791                 psta->aid  = pnetwork->join_res;
1792
1793 #if 0 //alloc macid when call rtw_alloc_stainfo(), and release macid when call rtw_free_stainfo()
1794 #ifdef CONFIG_CONCURRENT_MODE   
1795
1796                 if(PRIMARY_ADAPTER == padapter->adapter_type)
1797                         psta->mac_id=0;
1798                 else
1799                         psta->mac_id=2;
1800 #else
1801                 psta->mac_id=0;
1802 #endif
1803 #endif //removed
1804
1805                 update_sta_info(padapter, psta);
1806
1807                 //update station supportRate
1808                 psta->bssratelen = rtw_get_rateset_len(pnetwork->network.SupportedRates);
1809                 _rtw_memcpy(psta->bssrateset, pnetwork->network.SupportedRates, psta->bssratelen);
1810                 rtw_hal_update_sta_rate_mask(padapter, psta);
1811
1812                 psta->wireless_mode = pmlmeext->cur_wireless_mode;
1813                 psta->raid = rtw_hal_networktype_to_raid(padapter,psta);
1814
1815
1816                 //sta mode
1817                 rtw_hal_set_odm_var(padapter,HAL_ODM_STA_INFO,psta,_TRUE);
1818
1819                 //security related
1820                 if(padapter->securitypriv.dot11AuthAlgrthm== dot11AuthAlgrthm_8021X)
1821                 {                                               
1822                         padapter->securitypriv.binstallGrpkey=_FALSE;
1823                         padapter->securitypriv.busetkipkey=_FALSE;                                              
1824                         padapter->securitypriv.bgrpkey_handshake=_FALSE;
1825
1826                         psta->ieee8021x_blocked=_TRUE;
1827                         psta->dot118021XPrivacy=padapter->securitypriv.dot11PrivacyAlgrthm;
1828                                                 
1829                         _rtw_memset((u8 *)&psta->dot118021x_UncstKey, 0, sizeof (union Keytype));
1830                                                 
1831                         _rtw_memset((u8 *)&psta->dot11tkiprxmickey, 0, sizeof (union Keytype));
1832                         _rtw_memset((u8 *)&psta->dot11tkiptxmickey, 0, sizeof (union Keytype));
1833                                                 
1834                         _rtw_memset((u8 *)&psta->dot11txpn, 0, sizeof (union pn48));
1835                         psta->dot11txpn.val = psta->dot11txpn.val + 1;
1836 #ifdef CONFIG_IEEE80211W
1837                         _rtw_memset((u8 *)&psta->dot11wtxpn, 0, sizeof (union pn48));
1838 #endif //CONFIG_IEEE80211W
1839                         _rtw_memset((u8 *)&psta->dot11rxpn, 0, sizeof (union pn48));    
1840                 }
1841
1842                 //      Commented by Albert 2012/07/21
1843                 //      When doing the WPS, the wps_ie_len won't equal to 0
1844                 //      And the Wi-Fi driver shouldn't allow the data packet to be tramsmitted.
1845                 if ( padapter->securitypriv.wps_ie_len != 0 )
1846                 {
1847                         psta->ieee8021x_blocked=_TRUE;
1848                         padapter->securitypriv.wps_ie_len = 0;
1849                 }
1850
1851
1852                 //for A-MPDU Rx reordering buffer control for bmc_sta & sta_info
1853                 //if A-MPDU Rx is enabled, reseting  rx_ordering_ctrl wstart_b(indicate_seq) to default value=0xffff
1854                 //todo: check if AP can send A-MPDU packets
1855                 for(i=0; i < 16 ; i++)
1856                 {
1857                         //preorder_ctrl = &precvpriv->recvreorder_ctrl[i];
1858                         preorder_ctrl = &psta->recvreorder_ctrl[i];
1859                         preorder_ctrl->enable = _FALSE;
1860                         preorder_ctrl->indicate_seq = 0xffff;
1861                         #ifdef DBG_RX_SEQ
1862                         DBG_871X("DBG_RX_SEQ %s:%d indicate_seq:%u \n", __FUNCTION__, __LINE__,
1863                                 preorder_ctrl->indicate_seq);
1864                         #endif
1865                         preorder_ctrl->wend_b= 0xffff;
1866                         preorder_ctrl->wsize_b = 64;//max_ampdu_sz;//ex. 32(kbytes) -> wsize_b=32
1867                 }
1868
1869                 
1870                 bmc_sta = rtw_get_bcmc_stainfo(padapter);
1871                 if(bmc_sta)
1872                 {
1873                         for(i=0; i < 16 ; i++)
1874                         {
1875                                 //preorder_ctrl = &precvpriv->recvreorder_ctrl[i];
1876                                 preorder_ctrl = &bmc_sta->recvreorder_ctrl[i];
1877                                 preorder_ctrl->enable = _FALSE;
1878                                 preorder_ctrl->indicate_seq = 0xffff;
1879                                 #ifdef DBG_RX_SEQ
1880                                 DBG_871X("DBG_RX_SEQ %s:%d indicate_seq:%u \n", __FUNCTION__, __LINE__,
1881                                         preorder_ctrl->indicate_seq);
1882                                 #endif
1883                                 preorder_ctrl->wend_b= 0xffff;
1884                                 preorder_ctrl->wsize_b = 64;//max_ampdu_sz;//ex. 32(kbytes) -> wsize_b=32
1885                         }
1886                 }
1887         }
1888                                         
1889         return psta;
1890         
1891 }
1892
1893 //pnetwork : returns from rtw_joinbss_event_callback
1894 //ptarget_wlan: found from scanned_queue
1895 static void rtw_joinbss_update_network(_adapter *padapter, struct wlan_network *ptarget_wlan, struct wlan_network  *pnetwork)
1896 {
1897         struct mlme_priv        *pmlmepriv = &(padapter->mlmepriv);     
1898         struct wlan_network  *cur_network = &(pmlmepriv->cur_network);
1899
1900         DBG_871X("%s\n", __FUNCTION__);
1901         
1902         RT_TRACE(_module_rtl871x_mlme_c_,_drv_info_,("\nfw_state:%x, BSSID:"MAC_FMT"\n"
1903                 ,get_fwstate(pmlmepriv), MAC_ARG(pnetwork->network.MacAddress)));
1904
1905                                 
1906         // why not use ptarget_wlan??
1907         _rtw_memcpy(&cur_network->network, &pnetwork->network, pnetwork->network.Length);
1908         // some IEs in pnetwork is wrong, so we should use ptarget_wlan IEs
1909         cur_network->network.IELength = ptarget_wlan->network.IELength;
1910         _rtw_memcpy(&cur_network->network.IEs[0], &ptarget_wlan->network.IEs[0], MAX_IE_SZ);
1911
1912         cur_network->aid = pnetwork->join_res;
1913
1914                                 
1915 #ifdef CONFIG_NEW_SIGNAL_STAT_PROCESS
1916         rtw_set_signal_stat_timer(&padapter->recvpriv);
1917 #endif
1918         padapter->recvpriv.signal_strength = ptarget_wlan->network.PhyInfo.SignalStrength;
1919         padapter->recvpriv.signal_qual = ptarget_wlan->network.PhyInfo.SignalQuality;
1920         //the ptarget_wlan->network.Rssi is raw data, we use ptarget_wlan->network.PhyInfo.SignalStrength instead (has scaled)
1921         padapter->recvpriv.rssi = translate_percentage_to_dbm(ptarget_wlan->network.PhyInfo.SignalStrength);
1922         #if defined(DBG_RX_SIGNAL_DISPLAY_PROCESSING) && 1
1923                 DBG_871X(FUNC_ADPT_FMT" signal_strength:%3u, rssi:%3d, signal_qual:%3u"
1924                         "\n"
1925                         , FUNC_ADPT_ARG(padapter)
1926                         , padapter->recvpriv.signal_strength
1927                         , padapter->recvpriv.rssi
1928                         , padapter->recvpriv.signal_qual
1929         );
1930         #endif
1931 #ifdef CONFIG_NEW_SIGNAL_STAT_PROCESS
1932         rtw_set_signal_stat_timer(&padapter->recvpriv);
1933 #endif
1934                                 
1935         //update fw_state //will clr _FW_UNDER_LINKING here indirectly
1936         switch(pnetwork->network.InfrastructureMode)
1937         {       
1938                 case Ndis802_11Infrastructure:                                          
1939                         
1940                                 if(pmlmepriv->fw_state&WIFI_UNDER_WPS)
1941                                         pmlmepriv->fw_state = WIFI_STATION_STATE|WIFI_UNDER_WPS;
1942                                 else
1943                                         pmlmepriv->fw_state = WIFI_STATION_STATE;
1944                                 
1945                                 break;
1946                 case Ndis802_11IBSS:            
1947                                 pmlmepriv->fw_state = WIFI_ADHOC_STATE;
1948                                 break;
1949                 default:
1950                                 pmlmepriv->fw_state = WIFI_NULL_STATE;
1951                                 RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("Invalid network_mode\n"));
1952                                 break;
1953         }
1954
1955         rtw_update_protection(padapter, (cur_network->network.IEs) + sizeof (NDIS_802_11_FIXED_IEs), 
1956                                                                         (cur_network->network.IELength));
1957
1958 #ifdef CONFIG_80211N_HT                 
1959         rtw_update_ht_cap(padapter, cur_network->network.IEs, cur_network->network.IELength, (u8) cur_network->network.Configuration.DSConfig);
1960 #endif
1961 }
1962
1963 //Notes: the fucntion could be > passive_level (the same context as Rx tasklet)
1964 //pnetwork : returns from rtw_joinbss_event_callback
1965 //ptarget_wlan: found from scanned_queue
1966 //if join_res > 0, for (fw_state==WIFI_STATION_STATE), we check if  "ptarget_sta" & "ptarget_wlan" exist.       
1967 //if join_res > 0, for (fw_state==WIFI_ADHOC_STATE), we only check if "ptarget_wlan" exist.
1968 //if join_res > 0, update "cur_network->network" from "pnetwork->network" if (ptarget_wlan !=NULL).
1969 //
1970 //#define REJOIN
1971 void rtw_joinbss_event_prehandle(_adapter *adapter, u8 *pbuf)
1972 {
1973         _irqL irqL,irqL2;
1974         static u8 retry=0;
1975         u8 timer_cancelled;
1976         struct sta_info *ptarget_sta= NULL, *pcur_sta = NULL;
1977         struct  sta_priv *pstapriv = &adapter->stapriv;
1978         struct  mlme_priv       *pmlmepriv = &(adapter->mlmepriv);
1979         struct wlan_network     *pnetwork       = (struct wlan_network *)pbuf;
1980         struct wlan_network     *cur_network = &(pmlmepriv->cur_network);
1981         struct wlan_network     *pcur_wlan = NULL, *ptarget_wlan = NULL;
1982         unsigned int            the_same_macaddr = _FALSE;      
1983
1984 _func_enter_;   
1985
1986 #ifdef CONFIG_RTL8712
1987        //endian_convert
1988         pnetwork->join_res = le32_to_cpu(pnetwork->join_res);
1989         pnetwork->network_type = le32_to_cpu(pnetwork->network_type);
1990         pnetwork->network.Length = le32_to_cpu(pnetwork->network.Length);
1991         pnetwork->network.Ssid.SsidLength = le32_to_cpu(pnetwork->network.Ssid.SsidLength);
1992         pnetwork->network.Privacy =le32_to_cpu( pnetwork->network.Privacy);
1993         pnetwork->network.Rssi = le32_to_cpu(pnetwork->network.Rssi);
1994         pnetwork->network.NetworkTypeInUse =le32_to_cpu(pnetwork->network.NetworkTypeInUse) ;   
1995         pnetwork->network.Configuration.ATIMWindow = le32_to_cpu(pnetwork->network.Configuration.ATIMWindow);
1996         pnetwork->network.Configuration.BeaconPeriod = le32_to_cpu(pnetwork->network.Configuration.BeaconPeriod);
1997         pnetwork->network.Configuration.DSConfig = le32_to_cpu(pnetwork->network.Configuration.DSConfig);
1998         pnetwork->network.Configuration.FHConfig.DwellTime=le32_to_cpu(pnetwork->network.Configuration.FHConfig.DwellTime);
1999         pnetwork->network.Configuration.FHConfig.HopPattern=le32_to_cpu(pnetwork->network.Configuration.FHConfig.HopPattern);
2000         pnetwork->network.Configuration.FHConfig.HopSet=le32_to_cpu(pnetwork->network.Configuration.FHConfig.HopSet);
2001         pnetwork->network.Configuration.FHConfig.Length=le32_to_cpu(pnetwork->network.Configuration.FHConfig.Length);   
2002         pnetwork->network.Configuration.Length = le32_to_cpu(pnetwork->network.Configuration.Length);
2003         pnetwork->network.InfrastructureMode = le32_to_cpu(pnetwork->network.InfrastructureMode);
2004         pnetwork->network.IELength = le32_to_cpu(pnetwork->network.IELength );
2005 #endif
2006
2007         RT_TRACE(_module_rtl871x_mlme_c_,_drv_info_,("joinbss event call back received with res=%d\n", pnetwork->join_res));
2008
2009         rtw_get_encrypt_decrypt_from_registrypriv(adapter);
2010         
2011
2012         if (pmlmepriv->assoc_ssid.SsidLength == 0)
2013         {
2014                 RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("@@@@@   joinbss event call back  for Any SSid\n"));                
2015         }
2016         else
2017         {
2018                 RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("@@@@@   rtw_joinbss_event_callback for SSid:%s\n", pmlmepriv->assoc_ssid.Ssid));
2019         }
2020         
2021         the_same_macaddr = _rtw_memcmp(pnetwork->network.MacAddress, cur_network->network.MacAddress, ETH_ALEN);
2022
2023         pnetwork->network.Length = get_WLAN_BSSID_EX_sz(&pnetwork->network);
2024         if(pnetwork->network.Length > sizeof(WLAN_BSSID_EX))
2025         {
2026                 RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("\n\n ***joinbss_evt_callback return a wrong bss ***\n\n"));
2027                 goto ignore_joinbss_callback;
2028         }
2029                 
2030         _enter_critical_bh(&pmlmepriv->lock, &irqL);
2031         
2032         pmlmepriv->LinkDetectInfo.TrafficTransitionCount = 0;
2033         pmlmepriv->LinkDetectInfo.LowPowerTransitionCount = 0;
2034         
2035         RT_TRACE(_module_rtl871x_mlme_c_,_drv_info_,("\n rtw_joinbss_event_callback !! _enter_critical \n"));
2036
2037         if(pnetwork->join_res > 0)
2038         {
2039                 _enter_critical_bh(&(pmlmepriv->scanned_queue.lock), &irqL);
2040                 retry = 0;
2041                 if (check_fwstate(pmlmepriv,_FW_UNDER_LINKING) )
2042                 {
2043                         //s1. find ptarget_wlan
2044                         if(check_fwstate(pmlmepriv, _FW_LINKED) )
2045                         {
2046                                 if(the_same_macaddr == _TRUE)
2047                                 {
2048                                         ptarget_wlan = rtw_find_network(&pmlmepriv->scanned_queue, cur_network->network.MacAddress);                                    
2049                                 }
2050                                 else
2051                                 {
2052                                         pcur_wlan = rtw_find_network(&pmlmepriv->scanned_queue, cur_network->network.MacAddress);
2053                                         if(pcur_wlan)   pcur_wlan->fixed = _FALSE;
2054
2055                                         pcur_sta = rtw_get_stainfo(pstapriv, cur_network->network.MacAddress);
2056                                         if(pcur_sta){
2057                                                 //_enter_critical_bh(&(pstapriv->sta_hash_lock), &irqL2);
2058                                                 rtw_free_stainfo(adapter,  pcur_sta);
2059                                                 //_exit_critical_bh(&(pstapriv->sta_hash_lock), &irqL2);
2060                                         }
2061
2062                                         ptarget_wlan = rtw_find_network(&pmlmepriv->scanned_queue, pnetwork->network.MacAddress);
2063                                         if(check_fwstate(pmlmepriv, WIFI_STATION_STATE) == _TRUE){
2064                                                 if(ptarget_wlan)        ptarget_wlan->fixed = _TRUE;                    
2065                                         }
2066                                 }
2067
2068                         }
2069                         else
2070                         {
2071                                 ptarget_wlan = _rtw_find_same_network(&pmlmepriv->scanned_queue, pnetwork);
2072                                 if(check_fwstate(pmlmepriv, WIFI_STATION_STATE) == _TRUE){
2073                                         if(ptarget_wlan)        ptarget_wlan->fixed = _TRUE;                    
2074                                 }
2075                         }
2076                 
2077                         //s2. update cur_network 
2078                         if(ptarget_wlan)
2079                         {                       
2080                                 rtw_joinbss_update_network(adapter, ptarget_wlan, pnetwork);
2081                         }
2082                         else
2083                         {                       
2084                                 DBG_871X_LEVEL(_drv_always_, "Can't find ptarget_wlan when joinbss_event callback\n");
2085                                 _exit_critical_bh(&(pmlmepriv->scanned_queue.lock), &irqL);
2086                                 goto ignore_joinbss_callback;
2087                         }
2088                                         
2089                         
2090                         //s3. find ptarget_sta & update ptarget_sta after update cur_network only for station mode 
2091                         if(check_fwstate(pmlmepriv, WIFI_STATION_STATE) == _TRUE)
2092                         { 
2093                                 ptarget_sta = rtw_joinbss_update_stainfo(adapter, pnetwork);
2094                                 if(ptarget_sta==NULL)
2095                                 {
2096                                         RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("Can't update stainfo when joinbss_event callback\n"));
2097                                         _exit_critical_bh(&(pmlmepriv->scanned_queue.lock), &irqL);
2098                                         goto ignore_joinbss_callback;
2099                                 }
2100                         }
2101
2102                         //s4. indicate connect                  
2103                         if(check_fwstate(pmlmepriv, WIFI_STATION_STATE) == _TRUE)
2104                         {
2105                                 pmlmepriv->cur_network_scanned = ptarget_wlan;
2106                                 rtw_indicate_connect(adapter);
2107                         }
2108                         else
2109                         {
2110                                 //adhoc mode will rtw_indicate_connect when rtw_stassoc_event_callback
2111                                 RT_TRACE(_module_rtl871x_mlme_c_,_drv_info_,("adhoc mode, fw_state:%x", get_fwstate(pmlmepriv)));
2112                         }
2113
2114                                 
2115                         //s5. Cancle assoc_timer                                        
2116                         _cancel_timer(&pmlmepriv->assoc_timer, &timer_cancelled);
2117                 
2118                         RT_TRACE(_module_rtl871x_mlme_c_,_drv_info_,("Cancle assoc_timer \n"));         
2119                 
2120                 }
2121                 else
2122                 {
2123                         RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("rtw_joinbss_event_callback err: fw_state:%x", get_fwstate(pmlmepriv)));    
2124                         _exit_critical_bh(&(pmlmepriv->scanned_queue.lock), &irqL);
2125                         goto ignore_joinbss_callback;
2126                 }
2127                 
2128                 _exit_critical_bh(&(pmlmepriv->scanned_queue.lock), &irqL);     
2129                                 
2130         }
2131         else if(pnetwork->join_res == -4) 
2132         {
2133                 rtw_reset_securitypriv(adapter);
2134                 _set_timer(&pmlmepriv->assoc_timer, 1);                                 
2135
2136                 //rtw_free_assoc_resources(adapter, 1);
2137
2138                 if((check_fwstate(pmlmepriv, _FW_UNDER_LINKING)) == _TRUE)
2139                 {               
2140                         RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("fail! clear _FW_UNDER_LINKING ^^^fw_state=%x\n", get_fwstate(pmlmepriv)));
2141                         _clr_fwstate_(pmlmepriv, _FW_UNDER_LINKING);
2142                 }       
2143                 
2144         }
2145         else //if join_res < 0 (join fails), then try again
2146         {
2147         
2148                 #ifdef REJOIN
2149                 res = _FAIL;
2150                 if(retry < 2) {
2151                         res = rtw_select_and_join_from_scanned_queue(pmlmepriv);
2152                         RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("rtw_select_and_join_from_scanned_queue again! res:%d\n",res));
2153                 }
2154
2155                  if(res == _SUCCESS)
2156                 {
2157                         //extend time of assoc_timer
2158                         _set_timer(&pmlmepriv->assoc_timer, MAX_JOIN_TIMEOUT);
2159                         retry++;
2160                 }
2161                 else if(res == 2)//there is no need to wait for join
2162                 {
2163                         _clr_fwstate_(pmlmepriv, _FW_UNDER_LINKING);
2164                         rtw_indicate_connect(adapter);
2165                 }       
2166                 else
2167                 {
2168                         RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("Set Assoc_Timer = 1; can't find match ssid in scanned_q \n"));
2169                 #endif
2170                         
2171                         _set_timer(&pmlmepriv->assoc_timer, 1);
2172                         //rtw_free_assoc_resources(adapter, 1);
2173                         _clr_fwstate_(pmlmepriv, _FW_UNDER_LINKING);
2174                         
2175                 #ifdef REJOIN
2176                         retry = 0;      
2177                 }
2178                 #endif
2179         }
2180
2181 ignore_joinbss_callback:
2182
2183         _exit_critical_bh(&pmlmepriv->lock, &irqL);
2184         _func_exit_;    
2185 }
2186
2187 void rtw_joinbss_event_callback(_adapter *adapter, u8 *pbuf)
2188 {
2189         struct wlan_network     *pnetwork       = (struct wlan_network *)pbuf;
2190
2191 _func_enter_;
2192
2193         mlmeext_joinbss_event_callback(adapter, pnetwork->join_res);
2194
2195         rtw_os_xmit_schedule(adapter);
2196
2197 #ifdef CONFIG_CONCURRENT_MODE   
2198         rtw_os_xmit_schedule(adapter->pbuddy_adapter);
2199 #endif  
2200
2201 #ifdef CONFIG_DUALMAC_CONCURRENT
2202         dc_resume_xmit(adapter);
2203 #endif
2204
2205 _func_exit_;
2206 }
2207
2208 #if 0
2209 //#if (RATE_ADAPTIVE_SUPPORT==1)        //for 88E RA            
2210 u8 search_max_mac_id(_adapter *padapter)
2211 {
2212         u8 mac_id, aid;
2213         struct mlme_priv *pmlmepriv = &(padapter->mlmepriv);
2214         struct mlme_ext_priv *pmlmeext = &(padapter->mlmeextpriv);
2215         struct mlme_ext_info    *pmlmeinfo = &(pmlmeext->mlmext_info);
2216         struct sta_priv *pstapriv = &padapter->stapriv;
2217
2218 #if defined (CONFIG_AP_MODE) && defined (CONFIG_NATIVEAP_MLME)  
2219         if(check_fwstate(pmlmepriv, WIFI_AP_STATE)){            
2220                 
2221 #if 1
2222                 _irqL irqL;
2223                 struct dvobj_priv *pdvobj = adapter_to_dvobj(padapter);
2224
2225                 _enter_critical_bh(&pdvobj->lock, &irqL);
2226                 for(mac_id=(NUM_STA-1); mac_id>0; mac_id--)
2227                         if(pdvobj->macid[mac_id] == _TRUE)
2228                                 break;
2229                 _exit_critical_bh(&pdvobj->lock, &irqL);
2230
2231 #else
2232                 for (aid = (pstapriv->max_num_sta); aid > 0; aid--)
2233                 {
2234                         if (pstapriv->sta_aid[aid-1] != NULL)
2235                         {
2236                                 psta = pstapriv->sta_aid[aid-1];
2237                                 break;
2238                         }       
2239                 }
2240 /*
2241                 for (mac_id = (pstapriv->max_num_sta-1); mac_id >= 0; mac_id--)
2242                 {
2243                         if (pstapriv->sta_aid[mac_id] != NULL)
2244                                 break;
2245                 }       
2246 */
2247                 mac_id = aid + 1;
2248 #endif
2249         }
2250         else
2251 #endif
2252         {//adhoc  id =  31~2
2253                 for (mac_id = (NUM_STA-1); mac_id >= IBSS_START_MAC_ID ; mac_id--)
2254                 {
2255                         if (pmlmeinfo->FW_sta_info[mac_id].status == 1)
2256                         {
2257                                 break;
2258                         }
2259                 }
2260         }
2261
2262         DBG_871X("max mac_id=%d\n", mac_id);
2263
2264         return mac_id;
2265
2266 }               
2267 #endif  
2268
2269 //FOR STA, AP ,AD-HOC mode
2270 void rtw_sta_media_status_rpt(_adapter *adapter,struct sta_info *psta, u32 mstatus)
2271 {
2272         u16 media_status_rpt;
2273
2274         if(psta==NULL)  return;
2275
2276         #if (RATE_ADAPTIVE_SUPPORT==1)  //for 88E RA    
2277         {
2278                 u8 macid = rtw_search_max_mac_id(adapter);                              
2279                 rtw_hal_set_hwreg(adapter,HW_VAR_TX_RPT_MAX_MACID, (u8*)&macid);
2280         }
2281         #endif
2282         media_status_rpt = (u16)((psta->mac_id<<8)|mstatus); //  MACID|OPMODE:1 connect                         
2283         rtw_hal_set_hwreg(adapter,HW_VAR_H2C_MEDIA_STATUS_RPT,(u8 *)&media_status_rpt);                 
2284 }
2285
2286 void rtw_stassoc_event_callback(_adapter *adapter, u8 *pbuf)
2287 {
2288         _irqL irqL;     
2289         struct sta_info *psta;
2290         struct mlme_priv *pmlmepriv = &(adapter->mlmepriv);
2291         struct stassoc_event    *pstassoc       = (struct stassoc_event*)pbuf;
2292         struct wlan_network     *cur_network = &(pmlmepriv->cur_network);
2293         struct wlan_network     *ptarget_wlan = NULL;
2294         
2295 _func_enter_;   
2296         
2297         if(rtw_access_ctrl(adapter, pstassoc->macaddr) == _FALSE)
2298                 return;
2299
2300 #if defined (CONFIG_AP_MODE) && defined (CONFIG_NATIVEAP_MLME)
2301         if(check_fwstate(pmlmepriv, WIFI_AP_STATE))
2302         {
2303                 psta = rtw_get_stainfo(&adapter->stapriv, pstassoc->macaddr);   
2304                 if(psta)
2305                 {               
2306                         u8 *passoc_req = NULL;
2307                         u32 assoc_req_len = 0;
2308                 
2309                         rtw_sta_media_status_rpt(adapter, psta, 1);
2310                 
2311 #ifndef CONFIG_AUTO_AP_MODE
2312
2313                         ap_sta_info_defer_update(adapter, psta);
2314
2315                         //report to upper layer 
2316                         DBG_871X("indicate_sta_assoc_event to upper layer - hostapd\n");
2317 #ifdef CONFIG_IOCTL_CFG80211
2318                         _enter_critical_bh(&psta->lock, &irqL);
2319                         if(psta->passoc_req && psta->assoc_req_len>0)
2320                         {                               
2321                                 passoc_req = rtw_zmalloc(psta->assoc_req_len);
2322                                 if(passoc_req)
2323                                 {
2324                                         assoc_req_len = psta->assoc_req_len;
2325                                         _rtw_memcpy(passoc_req, psta->passoc_req, assoc_req_len);
2326                                         
2327                                         rtw_mfree(psta->passoc_req , psta->assoc_req_len);
2328                                         psta->passoc_req = NULL;
2329                                         psta->assoc_req_len = 0;
2330                                 }
2331                         }                       
2332                         _exit_critical_bh(&psta->lock, &irqL);
2333
2334                         if(passoc_req && assoc_req_len>0)
2335                         {
2336                                 rtw_cfg80211_indicate_sta_assoc(adapter, passoc_req, assoc_req_len);
2337
2338                                 rtw_mfree(passoc_req, assoc_req_len);
2339                         }                       
2340 #else //!CONFIG_IOCTL_CFG80211  
2341                         rtw_indicate_sta_assoc_event(adapter, psta);
2342 #endif //!CONFIG_IOCTL_CFG80211
2343 #endif //!CONFIG_AUTO_AP_MODE
2344                 }               
2345                 goto exit;
2346         }       
2347 #endif //defined (CONFIG_AP_MODE) && defined (CONFIG_NATIVEAP_MLME)
2348
2349         //for AD-HOC mode
2350         psta = rtw_get_stainfo(&adapter->stapriv, pstassoc->macaddr);   
2351         if( psta != NULL)
2352         {
2353                 //the sta have been in sta_info_queue => do nothing 
2354                 
2355                 RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("Error: rtw_stassoc_event_callback: sta has been in sta_hash_queue \n"));
2356                 
2357                 goto exit; //(between drv has received this event before and  fw have not yet to set key to CAM_ENTRY)
2358         }
2359
2360         psta = rtw_alloc_stainfo(&adapter->stapriv, pstassoc->macaddr); 
2361         if (psta == NULL) {
2362                 RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("Can't alloc sta_info when rtw_stassoc_event_callback\n"));
2363                 goto exit;
2364         }       
2365         
2366         //to do : init sta_info variable
2367         psta->qos_option = 0;
2368         psta->mac_id = (uint)pstassoc->cam_id;
2369         //psta->aid = (uint)pstassoc->cam_id;
2370         DBG_871X("%s\n",__FUNCTION__);
2371         //for ad-hoc mode
2372         rtw_hal_set_odm_var(adapter,HAL_ODM_STA_INFO,psta,_TRUE);
2373
2374         rtw_sta_media_status_rpt(adapter, psta, 1);
2375         
2376         if(adapter->securitypriv.dot11AuthAlgrthm==dot11AuthAlgrthm_8021X)
2377                 psta->dot118021XPrivacy = adapter->securitypriv.dot11PrivacyAlgrthm;
2378         
2379
2380         psta->ieee8021x_blocked = _FALSE;               
2381         
2382         _enter_critical_bh(&pmlmepriv->lock, &irqL);
2383
2384         if ( (check_fwstate(pmlmepriv, WIFI_ADHOC_MASTER_STATE)==_TRUE ) || 
2385                 (check_fwstate(pmlmepriv, WIFI_ADHOC_STATE)==_TRUE ) )
2386         {
2387                 if(adapter->stapriv.asoc_sta_count== 2)
2388                 {
2389                         _enter_critical_bh(&(pmlmepriv->scanned_queue.lock), &irqL);
2390                         ptarget_wlan = rtw_find_network(&pmlmepriv->scanned_queue, cur_network->network.MacAddress);
2391                         pmlmepriv->cur_network_scanned = ptarget_wlan;
2392                         if(ptarget_wlan)        ptarget_wlan->fixed = _TRUE;
2393                         _exit_critical_bh(&(pmlmepriv->scanned_queue.lock), &irqL);
2394                         // a sta + bc/mc_stainfo (not Ibss_stainfo)
2395                         rtw_indicate_connect(adapter);
2396                 }
2397         }
2398
2399         _exit_critical_bh(&pmlmepriv->lock, &irqL);
2400
2401
2402         mlmeext_sta_add_event_callback(adapter, psta);
2403         
2404 #ifdef CONFIG_RTL8711
2405         //submit SetStaKey_cmd to tell fw, fw will allocate an CAM entry for this sta   
2406         rtw_setstakey_cmd(adapter, psta, _FALSE, _TRUE);
2407 #endif
2408                 
2409 exit:
2410         
2411 _func_exit_;    
2412
2413 }
2414
2415 void rtw_stadel_event_callback(_adapter *adapter, u8 *pbuf)
2416 {
2417         _irqL irqL,irqL2;
2418         int mac_id = (-1);
2419         struct sta_info *psta;
2420         struct wlan_network* pwlan = NULL;
2421         WLAN_BSSID_EX    *pdev_network=NULL;
2422         u8* pibss = NULL;
2423         struct  mlme_priv       *pmlmepriv = &(adapter->mlmepriv);
2424         struct  stadel_event *pstadel   = (struct stadel_event*)pbuf;
2425         struct  sta_priv *pstapriv = &adapter->stapriv;
2426         struct wlan_network *tgt_network = &(pmlmepriv->cur_network);
2427         struct mlme_ext_priv    *pmlmeext = &adapter->mlmeextpriv;
2428         struct mlme_ext_info    *pmlmeinfo = &(pmlmeext->mlmext_info);
2429         
2430 _func_enter_;   
2431         
2432         psta = rtw_get_stainfo(&adapter->stapriv, pstadel->macaddr);
2433         if(psta)
2434                 mac_id = psta->mac_id;
2435         else
2436                 mac_id = pstadel->mac_id;
2437
2438         DBG_871X("%s(mac_id=%d)=" MAC_FMT "\n", __func__, mac_id, MAC_ARG(pstadel->macaddr));
2439
2440         if(mac_id>=0){
2441                 u16 media_status;
2442                 media_status = (mac_id<<8)|0; //  MACID|OPMODE:0 means disconnect
2443                 //for STA,AP,ADHOC mode, report disconnect stauts to FW
2444                 rtw_hal_set_hwreg(adapter, HW_VAR_H2C_MEDIA_STATUS_RPT, (u8 *)&media_status);
2445         }       
2446
2447         //if(check_fwstate(pmlmepriv, WIFI_AP_STATE))
2448         if((pmlmeinfo->state&0x03) == WIFI_FW_AP_STATE)
2449         {
2450 #ifdef CONFIG_IOCTL_CFG80211
2451                 #ifdef COMPAT_KERNEL_RELEASE
2452
2453                 #elif (LINUX_VERSION_CODE < KERNEL_VERSION(2,6,37)) || defined(CONFIG_CFG80211_FORCE_COMPATIBLE_2_6_37_UNDER)
2454                 rtw_cfg80211_indicate_sta_disassoc(adapter, pstadel->macaddr, *(u16*)pstadel->rsvd);
2455                 #endif //(LINUX_VERSION_CODE < KERNEL_VERSION(2,6,37)) || defined(CONFIG_CFG80211_FORCE_COMPATIBLE_2_6_37_UNDER)
2456 #endif //CONFIG_IOCTL_CFG80211
2457
2458                 return;
2459         }
2460
2461
2462         mlmeext_sta_del_event_callback(adapter);
2463
2464         _enter_critical_bh(&pmlmepriv->lock, &irqL2);
2465
2466         if(check_fwstate(pmlmepriv, WIFI_STATION_STATE) )
2467         {
2468                 u16 reason = *((unsigned short *)(pstadel->rsvd));
2469                 bool roam = _FALSE;
2470                 struct wlan_network *roam_target = NULL;
2471
2472                 #ifdef CONFIG_LAYER2_ROAMING
2473                 if(adapter->registrypriv.wifi_spec==1) {
2474                         roam = _FALSE;
2475                 } else if (reason == WLAN_REASON_EXPIRATION_CHK && rtw_chk_roam_flags(adapter, RTW_ROAM_ON_EXPIRED)) {
2476                         roam = _TRUE;
2477                 } else if (reason == WLAN_REASON_ACTIVE_ROAM && rtw_chk_roam_flags(adapter, RTW_ROAM_ACTIVE)) {
2478                         roam = _TRUE;
2479                         roam_target = pmlmepriv->roam_network;
2480                 }
2481 #ifdef CONFIG_INTEL_WIDI
2482                 else if (adapter->mlmepriv.widi_state == INTEL_WIDI_STATE_CONNECTED) {
2483                         roam = _TRUE;
2484                 }
2485 #endif // CONFIG_INTEL_WIDI
2486
2487                 if (roam == _TRUE) {
2488                         if (rtw_to_roam(adapter) > 0)
2489                                 rtw_dec_to_roam(adapter); /* this stadel_event is caused by roaming, decrease to_roam */
2490                         else if (rtw_to_roam(adapter) == 0)
2491                                 rtw_set_to_roam(adapter, adapter->registrypriv.max_roaming_times);
2492                 } else {
2493                         rtw_set_to_roam(adapter, 0);
2494                 }
2495                 #endif /* CONFIG_LAYER2_ROAMING */
2496
2497                 rtw_free_uc_swdec_pending_queue(adapter);
2498
2499                 rtw_free_assoc_resources(adapter, 1);
2500                 rtw_indicate_disconnect(adapter);
2501
2502                 _enter_critical_bh(&(pmlmepriv->scanned_queue.lock), &irqL);
2503                 // remove the network entry in scanned_queue
2504                 pwlan = rtw_find_network(&pmlmepriv->scanned_queue, tgt_network->network.MacAddress);   
2505                 if (pwlan) {                    
2506                         pwlan->fixed = _FALSE;
2507                         rtw_free_network_nolock(pmlmepriv, pwlan);
2508                 }
2509                 _exit_critical_bh(&(pmlmepriv->scanned_queue.lock), &irqL);
2510
2511 #ifdef CONFIG_INTEL_WIDI
2512                 if (!rtw_to_roam(adapter))
2513                         process_intel_widi_disconnect(adapter, 1);
2514 #endif // CONFIG_INTEL_WIDI
2515
2516                 _rtw_roaming(adapter, roam_target);
2517         }
2518
2519         if ( check_fwstate(pmlmepriv,WIFI_ADHOC_MASTER_STATE) || 
2520               check_fwstate(pmlmepriv,WIFI_ADHOC_STATE))
2521         {
2522                 
2523                 //_enter_critical_bh(&(pstapriv->sta_hash_lock), &irqL);
2524                 rtw_free_stainfo(adapter,  psta);
2525                 //_exit_critical_bh(&(pstapriv->sta_hash_lock), &irqL);
2526                 
2527                 if(adapter->stapriv.asoc_sta_count== 1) //a sta + bc/mc_stainfo (not Ibss_stainfo)
2528                 { 
2529                         //rtw_indicate_disconnect(adapter);//removed@20091105
2530                         _enter_critical_bh(&(pmlmepriv->scanned_queue.lock), &irqL);
2531                         //free old ibss network
2532                         //pwlan = rtw_find_network(&pmlmepriv->scanned_queue, pstadel->macaddr);
2533                         pwlan = rtw_find_network(&pmlmepriv->scanned_queue, tgt_network->network.MacAddress);
2534                         if(pwlan)       
2535                         {
2536                                 pwlan->fixed = _FALSE;
2537                                 rtw_free_network_nolock(pmlmepriv, pwlan); 
2538                         }
2539                         _exit_critical_bh(&(pmlmepriv->scanned_queue.lock), &irqL);
2540                         //re-create ibss
2541                         pdev_network = &(adapter->registrypriv.dev_network);                    
2542                         pibss = adapter->registrypriv.dev_network.MacAddress;
2543
2544                         _rtw_memcpy(pdev_network, &tgt_network->network, get_WLAN_BSSID_EX_sz(&tgt_network->network));
2545                         
2546                         _rtw_memset(&pdev_network->Ssid, 0, sizeof(NDIS_802_11_SSID));
2547                         _rtw_memcpy(&pdev_network->Ssid, &pmlmepriv->assoc_ssid, sizeof(NDIS_802_11_SSID));
2548         
2549                         rtw_update_registrypriv_dev_network(adapter);                   
2550
2551                         rtw_generate_random_ibss(pibss);
2552                         
2553                         if(check_fwstate(pmlmepriv,WIFI_ADHOC_STATE))
2554                         {
2555                                 set_fwstate(pmlmepriv, WIFI_ADHOC_MASTER_STATE);
2556                                 _clr_fwstate_(pmlmepriv, WIFI_ADHOC_STATE);
2557                         }
2558
2559                         if(rtw_createbss_cmd(adapter)!=_SUCCESS)
2560                         {
2561
2562                                 RT_TRACE(_module_rtl871x_ioctl_set_c_,_drv_err_,("***Error=>stadel_event_callback: rtw_createbss_cmd status FAIL*** \n "));                                                                             
2563
2564                         }
2565
2566                         
2567                 }
2568                 
2569         }
2570         
2571         _exit_critical_bh(&pmlmepriv->lock, &irqL2);
2572         
2573 _func_exit_;    
2574
2575 }
2576
2577
2578 void rtw_cpwm_event_callback(PADAPTER padapter, u8 *pbuf)
2579 {
2580 #ifdef CONFIG_LPS_LCLK
2581         struct reportpwrstate_parm *preportpwrstate;
2582 #endif
2583
2584 _func_enter_;
2585
2586         RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("+rtw_cpwm_event_callback !!!\n"));
2587 #ifdef CONFIG_LPS_LCLK
2588         preportpwrstate = (struct reportpwrstate_parm*)pbuf;
2589         preportpwrstate->state |= (u8)(adapter_to_pwrctl(padapter)->cpwm_tog + 0x80);
2590         cpwm_int_hdl(padapter, preportpwrstate);
2591 #endif
2592
2593 _func_exit_;
2594
2595 }
2596
2597 /*
2598 * _rtw_join_timeout_handler - Timeout/faliure handler for CMD JoinBss
2599 * @adapter: pointer to _adapter structure
2600 */
2601 void _rtw_join_timeout_handler (_adapter *adapter)
2602 {
2603         _irqL irqL;
2604         struct  mlme_priv *pmlmepriv = &adapter->mlmepriv;
2605
2606 #if 0
2607         if (adapter->bDriverStopped == _TRUE){
2608                 _rtw_up_sema(&pmlmepriv->assoc_terminate);
2609                 return;
2610         }
2611 #endif  
2612
2613 _func_enter_;           
2614
2615
2616         DBG_871X("%s, fw_state=%x\n", __FUNCTION__, get_fwstate(pmlmepriv));
2617         
2618         if(adapter->bDriverStopped ||adapter->bSurpriseRemoved)
2619                 return;
2620
2621         
2622         _enter_critical_bh(&pmlmepriv->lock, &irqL);
2623
2624         #ifdef CONFIG_LAYER2_ROAMING
2625         if (rtw_to_roam(adapter) > 0) { /* join timeout caused by roaming */
2626                 while(1) {
2627                         rtw_dec_to_roam(adapter);
2628                         if (rtw_to_roam(adapter) != 0) { /* try another */
2629                                 int do_join_r;
2630                                 DBG_871X("%s try another roaming\n", __FUNCTION__);
2631                                 if( _SUCCESS!=(do_join_r=rtw_do_join(adapter)) ) {
2632                                         DBG_871X("%s roaming do_join return %d\n", __FUNCTION__ ,do_join_r);
2633                                         continue;
2634                                 }
2635                                 break;
2636                         } else {
2637 #ifdef CONFIG_INTEL_WIDI
2638                                 if(adapter->mlmepriv.widi_state == INTEL_WIDI_STATE_ROAMING)
2639                                 {
2640                                         _rtw_memset(pmlmepriv->sa_ext, 0x00, L2SDTA_SERVICE_VE_LEN);
2641                                         intel_widi_wk_cmd(adapter, INTEL_WIDI_LISTEN_WK, NULL, 0);
2642                                         DBG_871X("change to widi listen\n");
2643                                 }
2644 #endif // CONFIG_INTEL_WIDI
2645                                 DBG_871X("%s We've try roaming but fail\n", __FUNCTION__);
2646                                 rtw_indicate_disconnect(adapter);
2647                                 break;
2648                         }
2649                 }
2650                 
2651         } else 
2652         #endif
2653         {
2654                 rtw_indicate_disconnect(adapter);
2655                 free_scanqueue(pmlmepriv);//???
2656
2657 #ifdef CONFIG_IOCTL_CFG80211
2658                 //indicate disconnect for the case that join_timeout and check_fwstate != FW_LINKED
2659                 rtw_cfg80211_indicate_disconnect(adapter);
2660 #endif //CONFIG_IOCTL_CFG80211
2661
2662         }
2663
2664         _exit_critical_bh(&pmlmepriv->lock, &irqL);
2665         
2666
2667 #ifdef CONFIG_DRVEXT_MODULE_WSC 
2668         drvext_assoc_fail_indicate(&adapter->drvextpriv);       
2669 #endif  
2670
2671         
2672 _func_exit_;
2673
2674 }
2675
2676 /*
2677 * rtw_scan_timeout_handler - Timeout/Faliure handler for CMD SiteSurvey
2678 * @adapter: pointer to _adapter structure
2679 */
2680 void rtw_scan_timeout_handler (_adapter *adapter)
2681 {       
2682         _irqL irqL;
2683         struct  mlme_priv *pmlmepriv = &adapter->mlmepriv;
2684         
2685         DBG_871X(FUNC_ADPT_FMT" fw_state=%x\n", FUNC_ADPT_ARG(adapter), get_fwstate(pmlmepriv));
2686
2687         _enter_critical_bh(&pmlmepriv->lock, &irqL);
2688         
2689         _clr_fwstate_(pmlmepriv, _FW_UNDER_SURVEY);
2690
2691         _exit_critical_bh(&pmlmepriv->lock, &irqL);
2692
2693         rtw_indicate_scan_done(adapter, _TRUE);
2694
2695 #if defined(CONFIG_CONCURRENT_MODE) && defined(CONFIG_IOCTL_CFG80211)
2696         if (adapter->pbuddy_adapter) {
2697                 _adapter *buddy_adapter = adapter->pbuddy_adapter;
2698                 struct mlme_priv *buddy_mlme = &(buddy_adapter->mlmepriv);
2699                 struct rtw_wdev_priv *buddy_wdev_priv = adapter_wdev_data(buddy_adapter);
2700                 bool indicate_buddy_scan = _FALSE;
2701
2702                 _enter_critical_bh(&buddy_wdev_priv->scan_req_lock, &irqL);
2703                 if (buddy_wdev_priv->scan_request && buddy_mlme->scanning_via_buddy_intf == _TRUE) {
2704                         buddy_mlme->scanning_via_buddy_intf = _FALSE;
2705                         clr_fwstate(buddy_mlme, _FW_UNDER_SURVEY);
2706                         indicate_buddy_scan = _TRUE;
2707                 }
2708                 _exit_critical_bh(&buddy_wdev_priv->scan_req_lock, &irqL);
2709
2710                 if (indicate_buddy_scan == _TRUE) {
2711                         rtw_indicate_scan_done(buddy_adapter, _TRUE);
2712                 }
2713         }
2714 #endif /* CONFIG_CONCURRENT_MODE */
2715 }
2716
2717 void rtw_mlme_reset_auto_scan_int(_adapter *adapter)
2718 {
2719         struct mlme_priv *mlme = &adapter->mlmepriv;
2720
2721 #ifdef CONFIG_P2P
2722         if(!rtw_p2p_chk_state(&adapter->wdinfo, P2P_STATE_NONE)) {
2723                 mlme->auto_scan_int_ms = 0; /* disabled */
2724                 goto exit;
2725         }
2726 #endif  
2727
2728         if(adapter->registrypriv.wifi_spec) {
2729                 mlme->auto_scan_int_ms = 60*1000;
2730 #ifdef CONFIG_LAYER2_ROAMING
2731         } else if(rtw_chk_roam_flags(adapter, RTW_ROAM_ACTIVE)) {
2732                 if (check_fwstate(mlme, WIFI_STATION_STATE) && check_fwstate(mlme, _FW_LINKED))
2733                         mlme->auto_scan_int_ms = mlme->roam_scan_int_ms;
2734 #endif
2735         } else {
2736                 mlme->auto_scan_int_ms = 0; /* disabled */
2737         }
2738 exit:
2739         return;
2740 }
2741
2742 static void rtw_auto_scan_handler(_adapter *padapter)
2743 {
2744         struct mlme_priv *pmlmepriv = &padapter->mlmepriv;
2745
2746         rtw_mlme_reset_auto_scan_int(padapter);
2747
2748         if (pmlmepriv->auto_scan_int_ms != 0
2749                 && rtw_get_passing_time_ms(pmlmepriv->scan_start_time) > pmlmepriv->auto_scan_int_ms) {
2750
2751                 if (!padapter->registrypriv.wifi_spec) {
2752                         if (check_fwstate(pmlmepriv, _FW_UNDER_SURVEY|_FW_UNDER_LINKING) == _TRUE) 
2753                         {
2754                                 DBG_871X(FUNC_ADPT_FMT" _FW_UNDER_SURVEY|_FW_UNDER_LINKING\n", FUNC_ADPT_ARG(padapter));
2755                                 goto exit;
2756                         }
2757                         
2758                         if(pmlmepriv->LinkDetectInfo.bBusyTraffic == _TRUE)
2759                         {
2760                                 DBG_871X(FUNC_ADPT_FMT" exit BusyTraffic\n", FUNC_ADPT_ARG(padapter));
2761                                 goto exit;
2762                         }
2763                 }
2764
2765 #ifdef CONFIG_CONCURRENT_MODE
2766                 if (rtw_buddy_adapter_up(padapter))
2767                 {
2768                         if ((check_buddy_fwstate(padapter, _FW_UNDER_SURVEY|_FW_UNDER_LINKING) == _TRUE) ||
2769                                 (padapter->pbuddy_adapter->mlmepriv.LinkDetectInfo.bBusyTraffic == _TRUE))
2770                         {               
2771                                 DBG_871X(FUNC_ADPT_FMT", but buddy_intf is under scanning or linking or BusyTraffic\n"
2772                                         , FUNC_ADPT_ARG(padapter));
2773                                 goto exit;
2774                         }
2775                 }
2776 #endif
2777
2778                 DBG_871X(FUNC_ADPT_FMT"\n", FUNC_ADPT_ARG(padapter));
2779
2780                 rtw_set_802_11_bssid_list_scan(padapter, NULL, 0);
2781         }
2782
2783 exit:
2784         return;
2785 }
2786
2787 void rtw_dynamic_check_timer_handlder(_adapter *adapter)
2788 {
2789 #ifdef CONFIG_AP_MODE
2790         struct mlme_priv *pmlmepriv = &adapter->mlmepriv;
2791 #endif //CONFIG_AP_MODE
2792         struct registry_priv *pregistrypriv = &adapter->registrypriv;
2793 #ifdef CONFIG_CONCURRENT_MODE   
2794         PADAPTER pbuddy_adapter = adapter->pbuddy_adapter;
2795 #endif
2796
2797         if(!adapter)
2798                 return; 
2799
2800         if(adapter->hw_init_completed == _FALSE)
2801                 return;
2802
2803         if ((adapter->bDriverStopped == _TRUE)||(adapter->bSurpriseRemoved== _TRUE))
2804                 return;
2805
2806         
2807 #ifdef CONFIG_CONCURRENT_MODE
2808         if(pbuddy_adapter)
2809         {
2810                 if(adapter->net_closed == _TRUE && pbuddy_adapter->net_closed == _TRUE)
2811                 {
2812                         return;
2813                 }               
2814         }
2815         else
2816 #endif //CONFIG_CONCURRENT_MODE
2817         if(adapter->net_closed == _TRUE)
2818         {
2819                 return;
2820         }       
2821
2822 #ifdef CONFIG_BT_COEXIST
2823         if(is_primary_adapter(adapter))
2824                 DBG_871X("IsBtDisabled=%d, IsBtControlLps=%d\n", rtw_btcoex_IsBtDisabled(adapter), rtw_btcoex_IsBtControlLps(adapter));
2825 #endif
2826
2827 #ifdef CONFIG_LPS_LCLK_WD_TIMER
2828         if ((adapter_to_pwrctl(adapter)->bFwCurrentInPSMode ==_TRUE )
2829 #ifdef CONFIG_BT_COEXIST
2830                 && (rtw_btcoex_IsBtControlLps(adapter) == _FALSE)
2831 #endif          
2832                 ) 
2833         {
2834                 u8 bEnterPS;    
2835                 
2836                 linked_status_chk(adapter);     
2837                         
2838                 bEnterPS = traffic_status_watchdog(adapter, 1);
2839                 if(bEnterPS)
2840                 {
2841                         //rtw_lps_ctrl_wk_cmd(adapter, LPS_CTRL_ENTER, 1);
2842                         rtw_hal_dm_watchdog_in_lps(adapter);
2843                 }
2844                 else
2845                 {
2846                         //call rtw_lps_ctrl_wk_cmd(padapter, LPS_CTRL_LEAVE, 1) in traffic_status_watchdog()
2847                 }
2848                         
2849         }
2850         else
2851 #endif //CONFIG_LPS_LCLK_WD_TIMER       
2852         {
2853                 if(is_primary_adapter(adapter))
2854                 {       
2855                         rtw_dynamic_chk_wk_cmd(adapter);                
2856                 }       
2857         }       
2858
2859         /* auto site survey */
2860         rtw_auto_scan_handler(adapter);
2861
2862 #ifndef CONFIG_ACTIVE_KEEP_ALIVE_CHECK
2863 #ifdef CONFIG_AP_MODE
2864         if(check_fwstate(pmlmepriv, WIFI_AP_STATE) == _TRUE)
2865         {
2866                 expire_timeout_chk(adapter);
2867         }       
2868 #endif
2869 #endif //!CONFIG_ACTIVE_KEEP_ALIVE_CHECK
2870
2871 #ifdef CONFIG_BR_EXT
2872
2873 #if (LINUX_VERSION_CODE > KERNEL_VERSION(2, 6, 35))
2874         rcu_read_lock();
2875 #endif  // (LINUX_VERSION_CODE > KERNEL_VERSION(2, 6, 35))
2876
2877 #if (LINUX_VERSION_CODE <= KERNEL_VERSION(2, 6, 35)) 
2878         if( adapter->pnetdev->br_port 
2879 #else   // (LINUX_VERSION_CODE <= KERNEL_VERSION(2, 6, 35))
2880         if( rcu_dereference(adapter->pnetdev->rx_handler_data)
2881 #endif  // (LINUX_VERSION_CODE <= KERNEL_VERSION(2, 6, 35))
2882                 && (check_fwstate(pmlmepriv, WIFI_STATION_STATE|WIFI_ADHOC_STATE) == _TRUE) )
2883         {
2884                 // expire NAT2.5 entry
2885                 void nat25_db_expire(_adapter *priv);
2886                 nat25_db_expire(adapter);
2887
2888                 if (adapter->pppoe_connection_in_progress > 0) {
2889                         adapter->pppoe_connection_in_progress--;
2890                 }
2891                 
2892                 // due to rtw_dynamic_check_timer_handlder() is called every 2 seconds
2893                 if (adapter->pppoe_connection_in_progress > 0) {
2894                         adapter->pppoe_connection_in_progress--;
2895                 }
2896         }
2897
2898 #if (LINUX_VERSION_CODE > KERNEL_VERSION(2, 6, 35))
2899         rcu_read_unlock();
2900 #endif  // (LINUX_VERSION_CODE > KERNEL_VERSION(2, 6, 35))
2901
2902 #endif  // CONFIG_BR_EXT
2903         
2904 }
2905
2906
2907 #ifdef CONFIG_SET_SCAN_DENY_TIMER
2908 inline bool rtw_is_scan_deny(_adapter *adapter)
2909 {
2910         struct mlme_priv *mlmepriv = &adapter->mlmepriv;
2911         return (ATOMIC_READ(&mlmepriv->set_scan_deny) != 0) ? _TRUE : _FALSE;
2912 }
2913
2914 inline void rtw_clear_scan_deny(_adapter *adapter)
2915 {
2916         struct mlme_priv *mlmepriv = &adapter->mlmepriv;
2917         ATOMIC_SET(&mlmepriv->set_scan_deny, 0);
2918         if (0)
2919         DBG_871X(FUNC_ADPT_FMT"\n", FUNC_ADPT_ARG(adapter));
2920 }
2921
2922 void rtw_set_scan_deny_timer_hdl(_adapter *adapter)
2923 {
2924         rtw_clear_scan_deny(adapter);
2925 }
2926
2927 void rtw_set_scan_deny(_adapter *adapter, u32 ms)
2928 {
2929         struct mlme_priv *mlmepriv = &adapter->mlmepriv;
2930 #ifdef CONFIG_CONCURRENT_MODE
2931         struct mlme_priv *b_mlmepriv;
2932 #endif
2933
2934         if (0)
2935         DBG_871X(FUNC_ADPT_FMT"\n", FUNC_ADPT_ARG(adapter));
2936         ATOMIC_SET(&mlmepriv->set_scan_deny, 1);
2937         _set_timer(&mlmepriv->set_scan_deny_timer, ms);
2938         
2939 #ifdef CONFIG_CONCURRENT_MODE
2940         if (!adapter->pbuddy_adapter)
2941                 return;
2942
2943         if (0)
2944         DBG_871X(FUNC_ADPT_FMT"\n", FUNC_ADPT_ARG(adapter->pbuddy_adapter));
2945         b_mlmepriv = &adapter->pbuddy_adapter->mlmepriv;
2946         ATOMIC_SET(&b_mlmepriv->set_scan_deny, 1);
2947         _set_timer(&b_mlmepriv->set_scan_deny_timer, ms);       
2948 #endif
2949         
2950 }
2951 #endif
2952
2953 #ifdef CONFIG_LAYER2_ROAMING
2954 /*
2955 * Select a new roaming candidate from the original @param candidate and @param competitor
2956 * @return _TRUE: candidate is updated
2957 * @return _FALSE: candidate is not updated
2958 */
2959 static int rtw_check_roaming_candidate(struct mlme_priv *mlme
2960         , struct wlan_network **candidate, struct wlan_network *competitor)
2961 {
2962         int updated = _FALSE;
2963         _adapter *adapter = container_of(mlme, _adapter, mlmepriv);
2964
2965         if(is_same_ess(&competitor->network, &mlme->cur_network.network) == _FALSE)
2966                 goto exit;
2967
2968         if(rtw_is_desired_network(adapter, competitor) == _FALSE)
2969                 goto exit;
2970
2971         DBG_871X("roam candidate:%s %s("MAC_FMT", ch%3u) rssi:%d, age:%5d\n",
2972                 (competitor == mlme->cur_network_scanned)?"*":" " ,
2973                 competitor->network.Ssid.Ssid,
2974                 MAC_ARG(competitor->network.MacAddress),
2975                 competitor->network.Configuration.DSConfig,
2976                 (int)competitor->network.Rssi,
2977                 rtw_get_passing_time_ms(competitor->last_scanned)
2978         );
2979
2980         /* got specific addr to roam */
2981         if (!is_zero_mac_addr(mlme->roam_tgt_addr)) {
2982                 if(_rtw_memcmp(mlme->roam_tgt_addr, competitor->network.MacAddress, ETH_ALEN) == _TRUE)
2983                         goto update;
2984                 else
2985                         goto exit;
2986         }
2987         #if 1
2988         if(rtw_get_passing_time_ms((u32)competitor->last_scanned) >= mlme->roam_scanr_exp_ms)
2989                 goto exit;
2990
2991         if (competitor->network.Rssi - mlme->cur_network_scanned->network.Rssi < mlme->roam_rssi_diff_th)
2992                 goto exit;
2993
2994         if(*candidate != NULL && (*candidate)->network.Rssi>=competitor->network.Rssi)
2995                 goto exit;
2996         #else
2997         goto exit;
2998         #endif
2999
3000 update:
3001         *candidate = competitor;
3002         updated = _TRUE;
3003
3004 exit:
3005         return updated;
3006 }
3007
3008 int rtw_select_roaming_candidate(struct mlme_priv *mlme)
3009 {
3010         _irqL   irqL;
3011         int ret = _FAIL;
3012         _list   *phead;
3013         _adapter *adapter;      
3014         _queue  *queue  = &(mlme->scanned_queue);
3015         struct  wlan_network    *pnetwork = NULL;
3016         struct  wlan_network    *candidate = NULL;
3017         u8              bSupportAntDiv = _FALSE;
3018
3019 _func_enter_;
3020
3021         if (mlme->cur_network_scanned == NULL) {
3022                 rtw_warn_on(1);
3023                 goto exit;
3024         }
3025
3026         _enter_critical_bh(&(mlme->scanned_queue.lock), &irqL);
3027         phead = get_list_head(queue);           
3028         adapter = (_adapter *)mlme->nic_hdl;
3029
3030         mlme->pscanned = get_next(phead);
3031
3032         while (!rtw_end_of_queue_search(phead, mlme->pscanned)) {
3033
3034                 pnetwork = LIST_CONTAINOR(mlme->pscanned, struct wlan_network, list);
3035                 if(pnetwork==NULL){
3036                         RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("%s return _FAIL:(pnetwork==NULL)\n", __FUNCTION__));
3037                         ret = _FAIL;
3038                         goto exit;
3039                 }
3040                 
3041                 mlme->pscanned = get_next(mlme->pscanned);
3042
3043                 if (0)
3044                 DBG_871X("%s("MAC_FMT", ch%u) rssi:%d\n"
3045                         , pnetwork->network.Ssid.Ssid
3046                         , MAC_ARG(pnetwork->network.MacAddress)
3047                         , pnetwork->network.Configuration.DSConfig
3048                         , (int)pnetwork->network.Rssi);
3049
3050                 rtw_check_roaming_candidate(mlme, &candidate, pnetwork);
3051  
3052         }
3053
3054         if(candidate == NULL) {
3055                 DBG_871X("%s: return _FAIL(candidate == NULL)\n", __FUNCTION__);
3056                 ret = _FAIL;
3057                 goto exit;
3058         } else {
3059                 DBG_871X("%s: candidate: %s("MAC_FMT", ch:%u)\n", __FUNCTION__,
3060                         candidate->network.Ssid.Ssid, MAC_ARG(candidate->network.MacAddress),
3061                         candidate->network.Configuration.DSConfig);
3062
3063                 mlme->roam_network = candidate;
3064
3065                 if (_rtw_memcmp(candidate->network.MacAddress, mlme->roam_tgt_addr, ETH_ALEN) == _TRUE)
3066                         _rtw_memset(mlme->roam_tgt_addr,0, ETH_ALEN);
3067         }
3068
3069         ret = _SUCCESS;
3070 exit:
3071         _exit_critical_bh(&(mlme->scanned_queue.lock), &irqL);
3072
3073         return ret;
3074 }
3075 #endif /* CONFIG_LAYER2_ROAMING */
3076
3077 /*
3078 * Select a new join candidate from the original @param candidate and @param competitor
3079 * @return _TRUE: candidate is updated
3080 * @return _FALSE: candidate is not updated
3081 */
3082 static int rtw_check_join_candidate(struct mlme_priv *mlme
3083         , struct wlan_network **candidate, struct wlan_network *competitor)
3084 {
3085         int updated = _FALSE;
3086         _adapter *adapter = container_of(mlme, _adapter, mlmepriv);
3087
3088
3089         //check bssid, if needed
3090         if(mlme->assoc_by_bssid==_TRUE) {
3091                 if(_rtw_memcmp(competitor->network.MacAddress, mlme->assoc_bssid, ETH_ALEN) ==_FALSE)
3092                         goto exit;
3093         }
3094
3095         //check ssid, if needed
3096         if(mlme->assoc_ssid.Ssid[0] && mlme->assoc_ssid.SsidLength) {
3097                 if(     competitor->network.Ssid.SsidLength != mlme->assoc_ssid.SsidLength
3098                         || _rtw_memcmp(competitor->network.Ssid.Ssid, mlme->assoc_ssid.Ssid, mlme->assoc_ssid.SsidLength) == _FALSE
3099                 )
3100                         goto exit;
3101         }
3102
3103         if(rtw_is_desired_network(adapter, competitor)  == _FALSE)
3104                 goto exit;
3105
3106 #ifdef  CONFIG_LAYER2_ROAMING
3107         if(rtw_to_roam(adapter) > 0) {
3108                 if(     rtw_get_passing_time_ms((u32)competitor->last_scanned) >= mlme->roam_scanr_exp_ms
3109                         || is_same_ess(&competitor->network, &mlme->cur_network.network) == _FALSE
3110                 )
3111                         goto exit;
3112         }
3113 #endif
3114         
3115         if(*candidate == NULL ||(*candidate)->network.Rssi<competitor->network.Rssi )
3116         {
3117                 *candidate = competitor;
3118                 updated = _TRUE;
3119         }
3120
3121         if(updated){
3122                 DBG_871X("[by_bssid:%u][assoc_ssid:%s]"
3123                         #ifdef  CONFIG_LAYER2_ROAMING
3124                         "[to_roam:%u] "
3125                         #endif
3126                         "new candidate: %s("MAC_FMT", ch%u) rssi:%d\n",
3127                         mlme->assoc_by_bssid,
3128                         mlme->assoc_ssid.Ssid,
3129                         #ifdef  CONFIG_LAYER2_ROAMING
3130                         rtw_to_roam(adapter),
3131                         #endif
3132                         (*candidate)->network.Ssid.Ssid,
3133                         MAC_ARG((*candidate)->network.MacAddress),
3134                         (*candidate)->network.Configuration.DSConfig,
3135                         (int)(*candidate)->network.Rssi
3136                 );
3137         }
3138
3139 exit:
3140         return updated;
3141 }
3142
3143 /*
3144 Calling context:
3145 The caller of the sub-routine will be in critical section...
3146
3147 The caller must hold the following spinlock
3148
3149 pmlmepriv->lock
3150
3151
3152 */
3153
3154 int rtw_select_and_join_from_scanned_queue(struct mlme_priv *pmlmepriv )
3155 {
3156         _irqL   irqL;
3157         int ret;
3158         _list   *phead;
3159         _adapter *adapter;      
3160         _queue  *queue  = &(pmlmepriv->scanned_queue);
3161         struct  wlan_network    *pnetwork = NULL;
3162         struct  wlan_network    *candidate = NULL;
3163         u8              bSupportAntDiv = _FALSE;
3164
3165 _func_enter_;
3166
3167         adapter = (_adapter *)pmlmepriv->nic_hdl;
3168
3169         _enter_critical_bh(&(pmlmepriv->scanned_queue.lock), &irqL);
3170
3171         #ifdef CONFIG_LAYER2_ROAMING
3172         if (pmlmepriv->roam_network) {
3173                 candidate = pmlmepriv->roam_network;
3174                 pmlmepriv->roam_network = NULL;
3175                 goto candidate_exist;
3176         }
3177         #endif
3178
3179         phead = get_list_head(queue);
3180         pmlmepriv->pscanned = get_next(phead);
3181
3182         while (!rtw_end_of_queue_search(phead, pmlmepriv->pscanned)) {
3183
3184                 pnetwork = LIST_CONTAINOR(pmlmepriv->pscanned, struct wlan_network, list);
3185                 if(pnetwork==NULL){
3186                         RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("%s return _FAIL:(pnetwork==NULL)\n", __FUNCTION__));
3187                         ret = _FAIL;
3188                         goto exit;
3189                 }
3190                 
3191                 pmlmepriv->pscanned = get_next(pmlmepriv->pscanned);
3192
3193                 if (0)
3194                 DBG_871X("%s("MAC_FMT", ch%u) rssi:%d\n"
3195                         , pnetwork->network.Ssid.Ssid
3196                         , MAC_ARG(pnetwork->network.MacAddress)
3197                         , pnetwork->network.Configuration.DSConfig
3198                         , (int)pnetwork->network.Rssi);
3199
3200                 rtw_check_join_candidate(pmlmepriv, &candidate, pnetwork);
3201  
3202         }
3203
3204         if(candidate == NULL) {
3205                 DBG_871X("%s: return _FAIL(candidate == NULL)\n", __FUNCTION__);
3206 #ifdef CONFIG_WOWLAN
3207                 _clr_fwstate_(pmlmepriv, _FW_LINKED|_FW_UNDER_LINKING);
3208 #endif
3209                 ret = _FAIL;
3210                 goto exit;
3211         } else {
3212                 DBG_871X("%s: candidate: %s("MAC_FMT", ch:%u)\n", __FUNCTION__,
3213                         candidate->network.Ssid.Ssid, MAC_ARG(candidate->network.MacAddress),
3214                         candidate->network.Configuration.DSConfig);
3215                 goto candidate_exist;
3216         }
3217         
3218 candidate_exist:
3219
3220         // check for situation of  _FW_LINKED 
3221         if (check_fwstate(pmlmepriv, _FW_LINKED) == _TRUE)
3222         {
3223                 DBG_871X("%s: _FW_LINKED while ask_for_joinbss!!!\n", __FUNCTION__);
3224
3225                 #if 0 // for WPA/WPA2 authentication, wpa_supplicant will expect authentication from AP, it is needed to reconnect AP...
3226                 if(is_same_network(&pmlmepriv->cur_network.network, &candidate->network))
3227                 {
3228                         DBG_871X("%s: _FW_LINKED and is same network, it needn't join again\n", __FUNCTION__);
3229
3230                         rtw_indicate_connect(adapter);//rtw_indicate_connect again
3231                                 
3232                         ret = 2;
3233                         goto exit;
3234                 }
3235                 else
3236                 #endif
3237                 {
3238                         rtw_disassoc_cmd(adapter, 0, _TRUE);
3239                         rtw_indicate_disconnect(adapter);
3240                         rtw_free_assoc_resources(adapter, 0);
3241                 }
3242         }
3243         
3244         #ifdef CONFIG_ANTENNA_DIVERSITY
3245         rtw_hal_get_def_var(adapter, HAL_DEF_IS_SUPPORT_ANT_DIV, &(bSupportAntDiv));
3246         if(_TRUE == bSupportAntDiv)     
3247         {
3248                 u8 CurrentAntenna;
3249                 rtw_hal_get_def_var(adapter, HAL_DEF_CURRENT_ANTENNA, &(CurrentAntenna));                       
3250                 DBG_871X("#### Opt_Ant_(%s) , cur_Ant(%s)\n",
3251                         (2==candidate->network.PhyInfo.Optimum_antenna)?"A":"B",
3252                         (2==CurrentAntenna)?"A":"B"
3253                 );
3254         }
3255         #endif
3256         set_fwstate(pmlmepriv, _FW_UNDER_LINKING);
3257         ret = rtw_joinbss_cmd(adapter, candidate);
3258         
3259 exit:
3260         _exit_critical_bh(&(pmlmepriv->scanned_queue.lock), &irqL);
3261
3262 _func_exit_;
3263
3264         return ret;
3265 }
3266
3267 sint rtw_set_auth(_adapter * adapter,struct security_priv *psecuritypriv)
3268 {
3269         struct  cmd_obj* pcmd;
3270         struct  setauth_parm *psetauthparm;
3271         struct  cmd_priv        *pcmdpriv=&(adapter->cmdpriv);
3272         sint            res=_SUCCESS;
3273         
3274 _func_enter_;   
3275
3276         pcmd = (struct  cmd_obj*)rtw_zmalloc(sizeof(struct      cmd_obj));
3277         if(pcmd==NULL){
3278                 res= _FAIL;  //try again
3279                 goto exit;
3280         }
3281         
3282         psetauthparm=(struct setauth_parm*)rtw_zmalloc(sizeof(struct setauth_parm));
3283         if(psetauthparm==NULL){
3284                 rtw_mfree((unsigned char *)pcmd, sizeof(struct  cmd_obj));
3285                 res= _FAIL;
3286                 goto exit;
3287         }
3288
3289         _rtw_memset(psetauthparm, 0, sizeof(struct setauth_parm));
3290         psetauthparm->mode=(unsigned char)psecuritypriv->dot11AuthAlgrthm;
3291         
3292         pcmd->cmdcode = _SetAuth_CMD_;
3293         pcmd->parmbuf = (unsigned char *)psetauthparm;   
3294         pcmd->cmdsz =  (sizeof(struct setauth_parm));  
3295         pcmd->rsp = NULL;
3296         pcmd->rspsz = 0;
3297
3298
3299         _rtw_init_listhead(&pcmd->list);
3300
3301         RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("after enqueue set_auth_cmd, auth_mode=%x\n", psecuritypriv->dot11AuthAlgrthm));
3302
3303         res = rtw_enqueue_cmd(pcmdpriv, pcmd);
3304
3305 exit:
3306
3307 _func_exit_;
3308
3309         return res;
3310
3311 }
3312
3313
3314 sint rtw_set_key(_adapter * adapter,struct security_priv *psecuritypriv,sint keyid, u8 set_tx, bool enqueue)
3315 {
3316         u8      keylen;
3317         struct cmd_obj          *pcmd;
3318         struct setkey_parm      *psetkeyparm;
3319         struct cmd_priv         *pcmdpriv = &(adapter->cmdpriv);
3320         struct mlme_priv                *pmlmepriv = &(adapter->mlmepriv);
3321         sint    res=_SUCCESS;
3322         
3323 _func_enter_;
3324
3325         psetkeyparm=(struct setkey_parm*)rtw_zmalloc(sizeof(struct setkey_parm));
3326         if(psetkeyparm==NULL){          
3327                 res= _FAIL;
3328                 goto exit;
3329         }
3330         _rtw_memset(psetkeyparm, 0, sizeof(struct setkey_parm));
3331
3332         if(psecuritypriv->dot11AuthAlgrthm ==dot11AuthAlgrthm_8021X){           
3333                 psetkeyparm->algorithm=(unsigned char)psecuritypriv->dot118021XGrpPrivacy;      
3334                 RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("\n rtw_set_key: psetkeyparm->algorithm=(unsigned char)psecuritypriv->dot118021XGrpPrivacy=%d \n", psetkeyparm->algorithm));
3335         }       
3336         else{
3337                 psetkeyparm->algorithm=(u8)psecuritypriv->dot11PrivacyAlgrthm;
3338                 RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("\n rtw_set_key: psetkeyparm->algorithm=(u8)psecuritypriv->dot11PrivacyAlgrthm=%d \n", psetkeyparm->algorithm));
3339
3340         }
3341         psetkeyparm->keyid = (u8)keyid;//0~3
3342         psetkeyparm->set_tx = set_tx;
3343         if (is_wep_enc(psetkeyparm->algorithm))
3344                 adapter->securitypriv.key_mask |= BIT(psetkeyparm->keyid);
3345
3346         DBG_871X("==> rtw_set_key algorithm(%x),keyid(%x),key_mask(%x)\n",psetkeyparm->algorithm,psetkeyparm->keyid, adapter->securitypriv.key_mask);
3347         RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("\n rtw_set_key: psetkeyparm->algorithm=%d psetkeyparm->keyid=(u8)keyid=%d \n",psetkeyparm->algorithm, keyid));
3348
3349         switch(psetkeyparm->algorithm){
3350                         
3351                 case _WEP40_:
3352                         keylen=5;
3353                         _rtw_memcpy(&(psetkeyparm->key[0]), &(psecuritypriv->dot11DefKey[keyid].skey[0]), keylen);
3354                         break;
3355                 case _WEP104_:
3356                         keylen=13;
3357                         _rtw_memcpy(&(psetkeyparm->key[0]), &(psecuritypriv->dot11DefKey[keyid].skey[0]), keylen);
3358                         break;
3359                 case _TKIP_:
3360                         keylen=16;                      
3361                         _rtw_memcpy(&psetkeyparm->key, &psecuritypriv->dot118021XGrpKey[keyid], keylen);
3362                         psetkeyparm->grpkey=1;
3363                         break;
3364                 case _AES_:
3365                         keylen=16;                      
3366                         _rtw_memcpy(&psetkeyparm->key, &psecuritypriv->dot118021XGrpKey[keyid], keylen);
3367                         psetkeyparm->grpkey=1;
3368                         break;
3369                 default:
3370                         RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("\n rtw_set_key:psecuritypriv->dot11PrivacyAlgrthm = %x (must be 1 or 2 or 4 or 5)\n",psecuritypriv->dot11PrivacyAlgrthm));
3371                         res= _FAIL;
3372                         rtw_mfree((unsigned char *)psetkeyparm, sizeof(struct setkey_parm));
3373                         goto exit;
3374         }
3375                 
3376                 
3377         if(enqueue){
3378                 pcmd = (struct  cmd_obj*)rtw_zmalloc(sizeof(struct      cmd_obj));
3379                 if(pcmd==NULL){
3380                         rtw_mfree((unsigned char *)psetkeyparm, sizeof(struct setkey_parm));
3381                         res= _FAIL;  //try again
3382                         goto exit;
3383                 }
3384                 
3385                 pcmd->cmdcode = _SetKey_CMD_;
3386                 pcmd->parmbuf = (u8 *)psetkeyparm;   
3387                 pcmd->cmdsz =  (sizeof(struct setkey_parm));  
3388                 pcmd->rsp = NULL;
3389                 pcmd->rspsz = 0;
3390
3391                 _rtw_init_listhead(&pcmd->list);
3392
3393                 //_rtw_init_sema(&(pcmd->cmd_sem), 0);
3394
3395                 res = rtw_enqueue_cmd(pcmdpriv, pcmd);
3396         }
3397         else{
3398                 setkey_hdl(adapter, (u8 *)psetkeyparm);
3399                 rtw_mfree((u8 *) psetkeyparm, sizeof(struct setkey_parm));
3400         }
3401 exit:
3402 _func_exit_;
3403         return res;
3404
3405 }
3406
3407
3408 //adjust IEs for rtw_joinbss_cmd in WMM
3409 int rtw_restruct_wmm_ie(_adapter *adapter, u8 *in_ie, u8 *out_ie, uint in_len, uint initial_out_len)
3410 {
3411         unsigned        int ielength=0;
3412         unsigned int i, j;
3413
3414         i = 12; //after the fixed IE
3415         while(i<in_len)
3416         {
3417                 ielength = initial_out_len;             
3418                 
3419                 if(in_ie[i] == 0xDD && in_ie[i+2] == 0x00 && in_ie[i+3] == 0x50  && in_ie[i+4] == 0xF2 && in_ie[i+5] == 0x02 && i+5 < in_len) //WMM element ID and OUI
3420                 {
3421
3422                         //Append WMM IE to the last index of out_ie
3423                         /*
3424                         for(j=i; j< i+(in_ie[i+1]+2); j++)
3425                         {
3426                                 out_ie[ielength] = in_ie[j];                            
3427                                 ielength++;
3428                         }
3429                         out_ie[initial_out_len+8] = 0x00; //force the QoS Info Field to be zero
3430                         */
3431                        
3432                         for ( j = i; j < i + 9; j++ )
3433                         {
3434                             out_ie[ ielength] = in_ie[ j ];
3435                             ielength++;
3436                         } 
3437                         out_ie[ initial_out_len + 1 ] = 0x07;
3438                         out_ie[ initial_out_len + 6 ] = 0x00;
3439                         out_ie[ initial_out_len + 8 ] = 0x00;
3440         
3441                         break;
3442                 }
3443
3444                 i+=(in_ie[i+1]+2); // to the next IE element
3445         }
3446         
3447         return ielength;
3448         
3449 }
3450
3451
3452 //
3453 // Ported from 8185: IsInPreAuthKeyList(). (Renamed from SecIsInPreAuthKeyList(), 2006-10-13.)
3454 // Added by Annie, 2006-05-07.
3455 //
3456 // Search by BSSID,
3457 // Return Value:
3458 //              -1              :if there is no pre-auth key in the  table
3459 //              >=0             :if there is pre-auth key, and   return the entry id
3460 //
3461 //
3462
3463 static int SecIsInPMKIDList(_adapter *Adapter, u8 *bssid)
3464 {
3465         struct security_priv *psecuritypriv=&Adapter->securitypriv;
3466         int i=0;
3467
3468         do
3469         {
3470                 if( ( psecuritypriv->PMKIDList[i].bUsed ) && 
3471                     (  _rtw_memcmp( psecuritypriv->PMKIDList[i].Bssid, bssid, ETH_ALEN ) == _TRUE ) )
3472                 {
3473                         break;
3474                 }
3475                 else
3476                 {       
3477                         i++;
3478                         //continue;
3479                 }
3480                 
3481         }while(i<NUM_PMKID_CACHE);
3482
3483         if( i == NUM_PMKID_CACHE )
3484         { 
3485                 i = -1;// Could not find.
3486         }
3487         else
3488         { 
3489                 // There is one Pre-Authentication Key for the specific BSSID.
3490         }
3491
3492         return (i);
3493         
3494 }
3495
3496 //
3497 // Check the RSN IE length
3498 // If the RSN IE length <= 20, the RSN IE didn't include the PMKID information
3499 // 0-11th element in the array are the fixed IE
3500 // 12th element in the array is the IE
3501 // 13th element in the array is the IE length  
3502 //
3503
3504 static int rtw_append_pmkid(_adapter *adapter,int iEntry, u8 *ie, uint ie_len)
3505 {
3506         struct security_priv *sec=&adapter->securitypriv;
3507
3508         if (ie[13] > 20) {
3509                 int i;
3510                 u16 pmkid_cnt = RTW_GET_LE16(ie+14+20);
3511                 if (pmkid_cnt == 1 && _rtw_memcmp(ie+14+20+2, &sec->PMKIDList[iEntry].PMKID, 16)) {
3512                         DBG_871X(FUNC_ADPT_FMT" has carried the same PMKID:"KEY_FMT"\n"
3513                                 , FUNC_ADPT_ARG(adapter), KEY_ARG(&sec->PMKIDList[iEntry].PMKID));
3514                         goto exit;
3515                 }
3516
3517                 DBG_871X(FUNC_ADPT_FMT" remove original PMKID, count:%u\n"
3518                         , FUNC_ADPT_ARG(adapter), pmkid_cnt);
3519
3520                 for (i=0;i<pmkid_cnt;i++)
3521                         DBG_871X("    "KEY_FMT"\n", KEY_ARG(ie+14+20+2+i*16));
3522
3523                 ie_len -= 2+pmkid_cnt*16;
3524                 ie[13] = 20;
3525         }
3526
3527         if (ie[13] <= 20) {     
3528                 /* The RSN IE didn't include the PMK ID, append the PMK information */
3529
3530                 DBG_871X(FUNC_ADPT_FMT" append PMKID:"KEY_FMT"\n"
3531                                 , FUNC_ADPT_ARG(adapter), KEY_ARG(&sec->PMKIDList[iEntry].PMKID));
3532
3533                 RTW_PUT_LE16(&ie[ie_len], 1);
3534                 ie_len += 2;
3535
3536                 _rtw_memcpy(&ie[ie_len], &sec->PMKIDList[iEntry].PMKID, 16);
3537                 ie_len += 16;
3538
3539                 ie[13] += 18;//PMKID length = 2+16
3540         }
3541
3542 exit:
3543         return (ie_len);
3544 }
3545
3546 static int rtw_remove_pmkid(_adapter *adapter, u8 *ie, uint ie_len)
3547 {
3548         struct security_priv *sec=&adapter->securitypriv;
3549         int i;
3550         u16 pmkid_cnt = RTW_GET_LE16(ie+14+20);
3551
3552         if (ie[13] <= 20)
3553                 goto exit;
3554
3555         DBG_871X(FUNC_ADPT_FMT" remove original PMKID, count:%u\n"
3556                 , FUNC_ADPT_ARG(adapter), pmkid_cnt);
3557
3558         for (i=0;i<pmkid_cnt;i++)
3559                 DBG_871X("    "KEY_FMT"\n", KEY_ARG(ie+14+20+2+i*16));
3560
3561         ie_len -= 2+pmkid_cnt*16;
3562         ie[13] = 20;
3563
3564 exit:
3565         return (ie_len);
3566 }
3567
3568 sint rtw_restruct_sec_ie(_adapter *adapter,u8 *in_ie, u8 *out_ie, uint in_len)
3569 {
3570         u8 authmode=0x0, securitytype, match;
3571         u8 sec_ie[255], uncst_oui[4], bkup_ie[255];
3572         u8 wpa_oui[4]={0x0, 0x50, 0xf2, 0x01};
3573         uint    ielength, cnt, remove_cnt;
3574         int iEntry;
3575
3576         struct mlme_priv *pmlmepriv = &adapter->mlmepriv;
3577         struct security_priv *psecuritypriv=&adapter->securitypriv;
3578         uint    ndisauthmode=psecuritypriv->ndisauthtype;
3579         uint ndissecuritytype = psecuritypriv->ndisencryptstatus;
3580         
3581 _func_enter_;
3582
3583         RT_TRACE(_module_rtl871x_mlme_c_, _drv_notice_,
3584                  ("+rtw_restruct_sec_ie: ndisauthmode=%d ndissecuritytype=%d\n",
3585                   ndisauthmode, ndissecuritytype));
3586         
3587         //copy fixed ie only
3588         _rtw_memcpy(out_ie, in_ie,12);
3589         ielength=12;
3590         if((ndisauthmode==Ndis802_11AuthModeWPA)||(ndisauthmode==Ndis802_11AuthModeWPAPSK))
3591                         authmode=_WPA_IE_ID_;
3592         if((ndisauthmode==Ndis802_11AuthModeWPA2)||(ndisauthmode==Ndis802_11AuthModeWPA2PSK))
3593                         authmode=_WPA2_IE_ID_;
3594
3595         if(check_fwstate(pmlmepriv, WIFI_UNDER_WPS))
3596         {
3597                 _rtw_memcpy(out_ie+ielength, psecuritypriv->wps_ie, psecuritypriv->wps_ie_len);
3598                 
3599                 ielength += psecuritypriv->wps_ie_len;
3600         }
3601         else if((authmode==_WPA_IE_ID_)||(authmode==_WPA2_IE_ID_))
3602         {               
3603                 //copy RSN or SSN               
3604                 _rtw_memcpy(&out_ie[ielength], &psecuritypriv->supplicant_ie[0], psecuritypriv->supplicant_ie[1]+2);
3605                 /* debug for CONFIG_IEEE80211W
3606                 {
3607                         int jj;
3608                         printk("supplicant_ie_length=%d &&&&&&&&&&&&&&&&&&&\n", psecuritypriv->supplicant_ie[1]+2);
3609                         for(jj=0; jj < psecuritypriv->supplicant_ie[1]+2; jj++)
3610                                 printk(" %02x ", psecuritypriv->supplicant_ie[jj]);
3611                         printk("\n");
3612                 }*/
3613                 ielength+=psecuritypriv->supplicant_ie[1]+2;
3614                 rtw_report_sec_ie(adapter, authmode, psecuritypriv->supplicant_ie);
3615         
3616 #ifdef CONFIG_DRVEXT_MODULE
3617                 drvext_report_sec_ie(&adapter->drvextpriv, authmode, sec_ie);   
3618 #endif
3619         }
3620
3621         iEntry = SecIsInPMKIDList(adapter, pmlmepriv->assoc_bssid);
3622         if(iEntry<0)
3623         {
3624                 if(authmode == _WPA2_IE_ID_)
3625                         ielength = rtw_remove_pmkid(adapter, out_ie, ielength);
3626         }
3627         else
3628         {
3629                 if(authmode == _WPA2_IE_ID_)
3630                         ielength=rtw_append_pmkid(adapter, iEntry, out_ie, ielength);
3631         }
3632
3633 _func_exit_;
3634         
3635         return ielength;        
3636 }
3637
3638 void rtw_init_registrypriv_dev_network( _adapter* adapter)
3639 {
3640         struct registry_priv* pregistrypriv = &adapter->registrypriv;
3641         struct eeprom_priv* peepriv = &adapter->eeprompriv;
3642         WLAN_BSSID_EX    *pdev_network = &pregistrypriv->dev_network;
3643         u8 *myhwaddr = myid(peepriv);
3644         
3645 _func_enter_;
3646
3647         _rtw_memcpy(pdev_network->MacAddress, myhwaddr, ETH_ALEN);
3648
3649         _rtw_memcpy(&pdev_network->Ssid, &pregistrypriv->ssid, sizeof(NDIS_802_11_SSID));
3650         
3651         pdev_network->Configuration.Length=sizeof(NDIS_802_11_CONFIGURATION);
3652         pdev_network->Configuration.BeaconPeriod = 100; 
3653         pdev_network->Configuration.FHConfig.Length = 0;
3654         pdev_network->Configuration.FHConfig.HopPattern = 0;
3655         pdev_network->Configuration.FHConfig.HopSet = 0;
3656         pdev_network->Configuration.FHConfig.DwellTime = 0;
3657         
3658         
3659 _func_exit_;    
3660         
3661 }
3662
3663 void rtw_update_registrypriv_dev_network(_adapter* adapter) 
3664 {
3665         int sz=0;
3666         struct registry_priv* pregistrypriv = &adapter->registrypriv;   
3667         WLAN_BSSID_EX    *pdev_network = &pregistrypriv->dev_network;
3668         struct  security_priv*  psecuritypriv = &adapter->securitypriv;
3669         struct  wlan_network    *cur_network = &adapter->mlmepriv.cur_network;
3670         //struct        xmit_priv       *pxmitpriv = &adapter->xmitpriv;
3671         struct mlme_ext_priv    *pmlmeext = &adapter->mlmeextpriv;
3672
3673 _func_enter_;
3674
3675 #if 0
3676         pxmitpriv->vcs_setting = pregistrypriv->vrtl_carrier_sense;
3677         pxmitpriv->vcs = pregistrypriv->vcs_type;
3678         pxmitpriv->vcs_type = pregistrypriv->vcs_type;
3679         //pxmitpriv->rts_thresh = pregistrypriv->rts_thresh;
3680         pxmitpriv->frag_len = pregistrypriv->frag_thresh;
3681         
3682         adapter->qospriv.qos_option = pregistrypriv->wmm_enable;
3683 #endif  
3684
3685         pdev_network->Privacy = (psecuritypriv->dot11PrivacyAlgrthm > 0 ? 1 : 0) ; // adhoc no 802.1x
3686
3687         pdev_network->Rssi = 0;
3688
3689         switch(pregistrypriv->wireless_mode)
3690         {
3691                 case WIRELESS_11B:
3692                         pdev_network->NetworkTypeInUse = (Ndis802_11DS);
3693                         break;  
3694                 case WIRELESS_11G:
3695                 case WIRELESS_11BG:
3696                 case WIRELESS_11_24N:
3697                 case WIRELESS_11G_24N:
3698                 case WIRELESS_11BG_24N:
3699                         pdev_network->NetworkTypeInUse = (Ndis802_11OFDM24);
3700                         break;
3701                 case WIRELESS_11A:
3702                 case WIRELESS_11A_5N:
3703                         pdev_network->NetworkTypeInUse = (Ndis802_11OFDM5);
3704                         break;
3705                 case WIRELESS_11ABGN:
3706                         if(pregistrypriv->channel > 14)
3707                                 pdev_network->NetworkTypeInUse = (Ndis802_11OFDM5);
3708                         else
3709                                 pdev_network->NetworkTypeInUse = (Ndis802_11OFDM24);
3710                         break;
3711                 default :
3712                         // TODO
3713                         break;
3714         }
3715         
3716         pdev_network->Configuration.DSConfig = (pregistrypriv->channel);
3717         RT_TRACE(_module_rtl871x_mlme_c_,_drv_info_,("pregistrypriv->channel=%d, pdev_network->Configuration.DSConfig=0x%x\n", pregistrypriv->channel, pdev_network->Configuration.DSConfig));  
3718
3719         if (cur_network->network.InfrastructureMode == Ndis802_11IBSS) {
3720                 pdev_network->Configuration.ATIMWindow = (0);
3721
3722                 if (pmlmeext->cur_channel != 0)
3723                         pdev_network->Configuration.DSConfig = pmlmeext->cur_channel;
3724                 else 
3725                         pdev_network->Configuration.DSConfig = 1;
3726         }
3727
3728         pdev_network->InfrastructureMode = (cur_network->network.InfrastructureMode);
3729
3730         // 1. Supported rates
3731         // 2. IE
3732
3733         //rtw_set_supported_rate(pdev_network->SupportedRates, pregistrypriv->wireless_mode) ; // will be called in rtw_generate_ie
3734         sz = rtw_generate_ie(pregistrypriv);
3735
3736         pdev_network->IELength = sz;
3737
3738         pdev_network->Length = get_WLAN_BSSID_EX_sz((WLAN_BSSID_EX  *)pdev_network);
3739
3740         //notes: translate IELength & Length after assign the Length to cmdsz in createbss_cmd();
3741         //pdev_network->IELength = cpu_to_le32(sz);
3742                 
3743 _func_exit_;    
3744
3745 }
3746
3747 void rtw_get_encrypt_decrypt_from_registrypriv(_adapter* adapter)
3748 {
3749 _func_enter_;
3750
3751
3752 _func_exit_;    
3753         
3754 }
3755
3756 //the fucntion is at passive_level 
3757 void rtw_joinbss_reset(_adapter *padapter)
3758 {
3759         u8      threshold;
3760         struct mlme_priv        *pmlmepriv = &padapter->mlmepriv;
3761
3762 #ifdef CONFIG_80211N_HT 
3763         struct ht_priv          *phtpriv = &pmlmepriv->htpriv;
3764 #endif
3765
3766         //todo: if you want to do something io/reg/hw setting before join_bss, please add code here
3767         
3768
3769
3770
3771 #ifdef CONFIG_80211N_HT
3772
3773         pmlmepriv->num_FortyMHzIntolerant = 0;
3774
3775         pmlmepriv->num_sta_no_ht = 0;
3776
3777         phtpriv->ampdu_enable = _FALSE;//reset to disabled
3778
3779 #if defined( CONFIG_USB_HCI) || defined (CONFIG_SDIO_HCI)
3780         // TH=1 => means that invalidate usb rx aggregation
3781         // TH=0 => means that validate usb rx aggregation, use init value.
3782         if(phtpriv->ht_option)
3783         {
3784                 if(padapter->registrypriv.wifi_spec==1)         
3785                         threshold = 1;
3786                 else
3787                         threshold = 0;          
3788                 rtw_hal_set_hwreg(padapter, HW_VAR_RXDMA_AGG_PG_TH, (u8 *)(&threshold));
3789         }
3790         else
3791         {
3792                 threshold = 1;
3793                 rtw_hal_set_hwreg(padapter, HW_VAR_RXDMA_AGG_PG_TH, (u8 *)(&threshold));
3794         }
3795 #endif
3796
3797 #endif  
3798
3799 }
3800
3801
3802 #ifdef CONFIG_80211N_HT
3803 void    rtw_ht_use_default_setting(_adapter *padapter)
3804 {
3805         struct mlme_priv                *pmlmepriv = &padapter->mlmepriv;
3806         struct ht_priv          *phtpriv = &pmlmepriv->htpriv;
3807         struct registry_priv    *pregistrypriv = &padapter->registrypriv;
3808         BOOLEAN         bHwLDPCSupport = _FALSE, bHwSTBCSupport = _FALSE;
3809         BOOLEAN         bHwSupportBeamformer = _FALSE, bHwSupportBeamformee = _FALSE;
3810
3811         if (pregistrypriv->wifi_spec)
3812                 phtpriv->bss_coexist = 1;
3813         else
3814                 phtpriv->bss_coexist = 0;
3815
3816         phtpriv->sgi_40m = TEST_FLAG(pregistrypriv->short_gi, BIT1) ? _TRUE : _FALSE;
3817         phtpriv->sgi_20m = TEST_FLAG(pregistrypriv->short_gi, BIT0) ? _TRUE : _FALSE;
3818
3819         // LDPC support
3820         rtw_hal_get_def_var(padapter, HAL_DEF_RX_LDPC, (u8 *)&bHwLDPCSupport);
3821         CLEAR_FLAGS(phtpriv->ldpc_cap);
3822         if(bHwLDPCSupport)
3823         {
3824                 if(TEST_FLAG(pregistrypriv->ldpc_cap, BIT4))
3825                         SET_FLAG(phtpriv->ldpc_cap, LDPC_HT_ENABLE_RX);
3826         }
3827         rtw_hal_get_def_var(padapter, HAL_DEF_TX_LDPC, (u8 *)&bHwLDPCSupport);
3828         if(bHwLDPCSupport)
3829         {
3830                 if(TEST_FLAG(pregistrypriv->ldpc_cap, BIT5))
3831                         SET_FLAG(phtpriv->ldpc_cap, LDPC_HT_ENABLE_TX);
3832         }
3833         if (phtpriv->ldpc_cap)
3834                 DBG_871X("[HT] Support LDPC = 0x%02X\n", phtpriv->ldpc_cap);
3835
3836         // STBC
3837         rtw_hal_get_def_var(padapter, HAL_DEF_TX_STBC, (u8 *)&bHwSTBCSupport);
3838         CLEAR_FLAGS(phtpriv->stbc_cap);
3839         if(bHwSTBCSupport)
3840         {
3841                 if(TEST_FLAG(pregistrypriv->stbc_cap, BIT5))
3842                         SET_FLAG(phtpriv->stbc_cap, STBC_HT_ENABLE_TX);
3843         }
3844         rtw_hal_get_def_var(padapter, HAL_DEF_RX_STBC, (u8 *)&bHwSTBCSupport);
3845         if(bHwSTBCSupport)
3846         {
3847                 if(TEST_FLAG(pregistrypriv->stbc_cap, BIT4))
3848                         SET_FLAG(phtpriv->stbc_cap, STBC_HT_ENABLE_RX);
3849         }
3850         if (phtpriv->stbc_cap)
3851                 DBG_871X("[HT] Support STBC = 0x%02X\n", phtpriv->stbc_cap);
3852
3853         // Beamforming setting
3854         rtw_hal_get_def_var(padapter, HAL_DEF_EXPLICIT_BEAMFORMER, (u8 *)&bHwSupportBeamformer);
3855         rtw_hal_get_def_var(padapter, HAL_DEF_EXPLICIT_BEAMFORMEE, (u8 *)&bHwSupportBeamformee);
3856         CLEAR_FLAGS(phtpriv->beamform_cap);
3857         if(TEST_FLAG(pregistrypriv->beamform_cap, BIT4) && bHwSupportBeamformer)
3858         {
3859                 SET_FLAG(phtpriv->beamform_cap, BEAMFORMING_HT_BEAMFORMER_ENABLE);
3860                 DBG_871X("[HT] Support Beamformer\n");
3861         }
3862         if(TEST_FLAG(pregistrypriv->beamform_cap, BIT5) && bHwSupportBeamformee)
3863         {
3864                 SET_FLAG(phtpriv->beamform_cap, BEAMFORMING_HT_BEAMFORMEE_ENABLE);
3865                 DBG_871X("[HT] Support Beamformee\n");
3866         }
3867 }
3868
3869 void rtw_build_wmm_ie_ht(_adapter *padapter, u8 *out_ie, uint *pout_len)
3870 {
3871         unsigned char WMM_IE[] = {0x00, 0x50, 0xf2, 0x02, 0x00, 0x01, 0x00};
3872         int out_len;
3873         u8 *pframe;
3874
3875         if(padapter->mlmepriv.qospriv.qos_option == 0)
3876         {
3877                 out_len = *pout_len;
3878                 pframe = rtw_set_ie(out_ie+out_len, _VENDOR_SPECIFIC_IE_, 
3879                                                         _WMM_IE_Length_, WMM_IE, pout_len);
3880
3881                 padapter->mlmepriv.qospriv.qos_option = 1;
3882         }
3883 }
3884
3885 /* the fucntion is >= passive_level */
3886 unsigned int rtw_restructure_ht_ie(_adapter *padapter, u8 *in_ie, u8 *out_ie, uint in_len, uint *pout_len, u8 channel)
3887 {
3888         u32 ielen, out_len;
3889         u32 max_rx_ampdu_factor;
3890         unsigned char *p, *pframe;
3891         struct rtw_ieee80211_ht_cap ht_capie;
3892         u8      cbw40_enable = 0, stbc_rx_enable = 0, rf_type = 0, operation_bw=0;
3893         struct registry_priv *pregistrypriv = &padapter->registrypriv;
3894         struct mlme_priv        *pmlmepriv = &padapter->mlmepriv;
3895         struct ht_priv          *phtpriv = &pmlmepriv->htpriv;
3896
3897         phtpriv->ht_option = _FALSE;
3898
3899         out_len = *pout_len;
3900
3901         _rtw_memset(&ht_capie, 0, sizeof(struct rtw_ieee80211_ht_cap));
3902
3903         ht_capie.cap_info = IEEE80211_HT_CAP_DSSSCCK40;
3904
3905         if (phtpriv->sgi_20m)
3906                 ht_capie.cap_info |= IEEE80211_HT_CAP_SGI_20;
3907
3908         /* Get HT BW */
3909         if (in_ie == NULL) {
3910                 /* TDLS: TODO 20/40 issue */
3911                 if (check_fwstate(pmlmepriv, WIFI_STATION_STATE)) {
3912                         operation_bw = padapter->mlmeextpriv.cur_bwmode;
3913                         if (operation_bw > CHANNEL_WIDTH_40)
3914                                 operation_bw = CHANNEL_WIDTH_40;
3915                 } else
3916                         /* TDLS: TODO 40? */
3917                         operation_bw = CHANNEL_WIDTH_40;
3918         } else {
3919                 p = rtw_get_ie(in_ie, _HT_ADD_INFO_IE_, &ielen, in_len);
3920                 if (p && (ielen == sizeof(struct ieee80211_ht_addt_info))) {
3921                         struct HT_info_element *pht_info = (struct HT_info_element *)(p+2);
3922                         if (pht_info->infos[0] & BIT(2)) {
3923                                 switch (pht_info->infos[0] & 0x3) {
3924                                 case 1:
3925                                 case 3:
3926                                         operation_bw = CHANNEL_WIDTH_40;
3927                                         break;
3928                                 default:
3929                                         operation_bw = CHANNEL_WIDTH_20;
3930                                         break;
3931                                 }
3932                         } else {
3933                                 operation_bw = CHANNEL_WIDTH_20;
3934                         }
3935                 }
3936         }
3937
3938         /* to disable 40M Hz support while gd_bw_40MHz_en = 0 */
3939         if (channel > 14) {
3940                 if ((pregistrypriv->bw_mode & 0xf0) > 0)
3941                         cbw40_enable = 1;
3942         } else {
3943                 if ((pregistrypriv->bw_mode & 0x0f) > 0)
3944                         cbw40_enable = 1;
3945         }
3946
3947         if ((cbw40_enable == 1) && (operation_bw == CHANNEL_WIDTH_40)) {
3948                 ht_capie.cap_info |= IEEE80211_HT_CAP_SUP_WIDTH;
3949                 if (phtpriv->sgi_40m)
3950                         ht_capie.cap_info |= IEEE80211_HT_CAP_SGI_40;
3951         }
3952
3953         if (TEST_FLAG(phtpriv->stbc_cap, STBC_HT_ENABLE_TX))
3954                 ht_capie.cap_info |= IEEE80211_HT_CAP_TX_STBC;
3955
3956         /* todo: disable SM power save mode */
3957         ht_capie.cap_info |= IEEE80211_HT_CAP_SM_PS;
3958
3959         if (TEST_FLAG(phtpriv->stbc_cap, STBC_HT_ENABLE_RX)) {
3960                 if((pregistrypriv->rx_stbc == 0x3) ||                                                   /* enable for 2.4/5 GHz */
3961                         ((channel <= 14) && (pregistrypriv->rx_stbc == 0x1)) || /* enable for 2.4GHz */
3962                         ((channel > 14) && (pregistrypriv->rx_stbc == 0x2)) ||          /* enable for 5GHz */
3963                         (pregistrypriv->wifi_spec == 1)) {
3964                         stbc_rx_enable = 1;
3965                         DBG_871X("declare supporting RX STBC\n");
3966                 }
3967         }
3968
3969         rtw_hal_get_hwreg(padapter, HW_VAR_RF_TYPE, (u8 *)(&rf_type));
3970 #ifdef RTL8192C_RECONFIG_TO_1T1R
3971         rf_type = RF_1T1R;
3972 #endif
3973         switch (rf_type) {
3974         case RF_1T1R:
3975                 if (stbc_rx_enable)
3976                         ht_capie.cap_info |= IEEE80211_HT_CAP_RX_STBC_1R;//RX STBC One spatial stream
3977
3978                 _rtw_memcpy(ht_capie.supp_mcs_set, MCS_rate_1R, 16);
3979                 break;
3980
3981         case RF_2T2R:
3982         case RF_1T2R:
3983         default:
3984
3985                 if (stbc_rx_enable)
3986                         ht_capie.cap_info |= IEEE80211_HT_CAP_RX_STBC_2R;//RX STBC two spatial stream
3987
3988                 #ifdef CONFIG_DISABLE_MCS13TO15
3989                 if(((cbw40_enable == 1) && (operation_bw == CHANNEL_WIDTH_40)) && (pregistrypriv->wifi_spec!=1))
3990                         _rtw_memcpy(ht_capie.supp_mcs_set, MCS_rate_2R_MCS13TO15_OFF, 16);
3991                 else
3992                         _rtw_memcpy(ht_capie.supp_mcs_set, MCS_rate_2R, 16);
3993                 #else //CONFIG_DISABLE_MCS13TO15
3994                 _rtw_memcpy(ht_capie.supp_mcs_set, MCS_rate_2R, 16);
3995                 #endif //CONFIG_DISABLE_MCS13TO15
3996                 break;
3997         }
3998
3999         {
4000                 u32 rx_packet_offset, max_recvbuf_sz;
4001                 rtw_hal_get_def_var(padapter, HAL_DEF_RX_PACKET_OFFSET, &rx_packet_offset);
4002                 rtw_hal_get_def_var(padapter, HAL_DEF_MAX_RECVBUF_SZ, &max_recvbuf_sz);
4003                 //if(max_recvbuf_sz-rx_packet_offset>(8191-256)) {
4004                 //      DBG_871X("%s IEEE80211_HT_CAP_MAX_AMSDU is set\n", __FUNCTION__);
4005                 //      ht_capie.cap_info = ht_capie.cap_info |IEEE80211_HT_CAP_MAX_AMSDU;
4006                 //}
4007         }
4008         /*      
4009         AMPDU_para [1:0]:Max AMPDU Len => 0:8k , 1:16k, 2:32k, 3:64k
4010         AMPDU_para [4:2]:Min MPDU Start Spacing 
4011         */
4012
4013         /*
4014         #if defined(CONFIG_RTL8188E )&& defined (CONFIG_SDIO_HCI)
4015         ht_capie.ampdu_params_info = 2;
4016         #else
4017         ht_capie.ampdu_params_info = (IEEE80211_HT_CAP_AMPDU_FACTOR&0x03);
4018         #endif
4019         */
4020
4021         rtw_hal_get_def_var(padapter, HW_VAR_MAX_RX_AMPDU_FACTOR, &max_rx_ampdu_factor);
4022         ht_capie.ampdu_params_info = (max_rx_ampdu_factor&0x03);
4023
4024         if(padapter->securitypriv.dot11PrivacyAlgrthm == _AES_ )
4025                 ht_capie.ampdu_params_info |= (IEEE80211_HT_CAP_AMPDU_DENSITY&(0x07<<2));
4026         else
4027                 ht_capie.ampdu_params_info |= (IEEE80211_HT_CAP_AMPDU_DENSITY&0x00);
4028
4029 #ifdef CONFIG_BEAMFORMING
4030         ht_capie.tx_BF_cap_info = 0;
4031
4032         // HT Beamformer
4033         if(TEST_FLAG(phtpriv->beamform_cap, BEAMFORMING_HT_BEAMFORMER_ENABLE))
4034         {
4035                 // Transmit NDP Capable
4036                 SET_HT_CAP_TXBF_TRANSMIT_NDP_CAP(&ht_capie, 1);
4037                 // Explicit Compressed Steering Capable
4038                 SET_HT_CAP_TXBF_EXPLICIT_COMP_STEERING_CAP(&ht_capie, 1);
4039                 // Compressed Steering Number Antennas
4040                 SET_HT_CAP_TXBF_COMP_STEERING_NUM_ANTENNAS(&ht_capie, 1);
4041         }
4042
4043         // HT Beamformee
4044         if(TEST_FLAG(phtpriv->beamform_cap, BEAMFORMING_HT_BEAMFORMEE_ENABLE))
4045         {
4046                 // Receive NDP Capable
4047                 SET_HT_CAP_TXBF_RECEIVE_NDP_CAP(&ht_capie, 1);
4048                 // Explicit Compressed Beamforming Feedback Capable
4049                 SET_HT_CAP_TXBF_EXPLICIT_COMP_FEEDBACK_CAP(&ht_capie, 2);
4050         }
4051 #endif
4052
4053         pframe = rtw_set_ie(out_ie+out_len, _HT_CAPABILITY_IE_, 
4054                                                 sizeof(struct rtw_ieee80211_ht_cap), (unsigned char*)&ht_capie, pout_len);
4055
4056         phtpriv->ht_option = _TRUE;
4057
4058         if(in_ie!=NULL)
4059         {
4060                 p = rtw_get_ie(in_ie, _HT_ADD_INFO_IE_, &ielen, in_len);
4061                 if(p && (ielen==sizeof(struct ieee80211_ht_addt_info)))
4062                 {
4063                         out_len = *pout_len;            
4064                         pframe = rtw_set_ie(out_ie+out_len, _HT_ADD_INFO_IE_, ielen, p+2 , pout_len);
4065                 }
4066         }
4067
4068         return (phtpriv->ht_option);
4069         
4070 }
4071
4072 //the fucntion is > passive_level (in critical_section)
4073 void rtw_update_ht_cap(_adapter *padapter, u8 *pie, uint ie_len, u8 channel)
4074 {       
4075         u8 *p, max_ampdu_sz;
4076         int len;                
4077         //struct sta_info *bmc_sta, *psta;
4078         struct rtw_ieee80211_ht_cap *pht_capie;
4079         struct ieee80211_ht_addt_info *pht_addtinfo;
4080         //struct recv_reorder_ctrl *preorder_ctrl;
4081         struct mlme_priv        *pmlmepriv = &padapter->mlmepriv;
4082         struct ht_priv          *phtpriv = &pmlmepriv->htpriv;
4083         //struct recv_priv *precvpriv = &padapter->recvpriv;
4084         struct registry_priv *pregistrypriv = &padapter->registrypriv;
4085         //struct wlan_network *pcur_network = &(pmlmepriv->cur_network);;
4086         struct mlme_ext_priv    *pmlmeext = &padapter->mlmeextpriv;
4087         struct mlme_ext_info    *pmlmeinfo = &(pmlmeext->mlmext_info);
4088         u8 cbw40_enable=0;
4089         
4090
4091         if(!phtpriv->ht_option)
4092                 return;
4093
4094         if ((!pmlmeinfo->HT_info_enable) || (!pmlmeinfo->HT_caps_enable))
4095                 return;
4096
4097         DBG_871X("+rtw_update_ht_cap()\n");
4098
4099         //maybe needs check if ap supports rx ampdu.
4100         if((phtpriv->ampdu_enable==_FALSE) &&(pregistrypriv->ampdu_enable==1))
4101         {
4102                 if(pregistrypriv->wifi_spec==1)
4103                 {
4104                         phtpriv->ampdu_enable = _FALSE;
4105                 }
4106                 else
4107                 {
4108                         phtpriv->ampdu_enable = _TRUE;
4109                 }
4110         }
4111         else if(pregistrypriv->ampdu_enable==2)
4112         {
4113                 phtpriv->ampdu_enable = _TRUE;
4114         }
4115
4116         
4117         //check Max Rx A-MPDU Size 
4118         len = 0;
4119         p = rtw_get_ie(pie+sizeof (NDIS_802_11_FIXED_IEs), _HT_CAPABILITY_IE_, &len, ie_len-sizeof (NDIS_802_11_FIXED_IEs));
4120         if(p && len>0)  
4121         {
4122                 pht_capie = (struct rtw_ieee80211_ht_cap *)(p+2);
4123                 max_ampdu_sz = (pht_capie->ampdu_params_info & IEEE80211_HT_CAP_AMPDU_FACTOR);
4124                 max_ampdu_sz = 1 << (max_ampdu_sz+3); // max_ampdu_sz (kbytes);
4125                 
4126                 //DBG_871X("rtw_update_ht_cap(): max_ampdu_sz=%d\n", max_ampdu_sz);
4127                 phtpriv->rx_ampdu_maxlen = max_ampdu_sz;
4128                 
4129         }
4130
4131
4132         len=0;
4133         p = rtw_get_ie(pie+sizeof (NDIS_802_11_FIXED_IEs), _HT_ADD_INFO_IE_, &len, ie_len-sizeof (NDIS_802_11_FIXED_IEs));
4134         if(p && len>0)  
4135         {
4136                 pht_addtinfo = (struct ieee80211_ht_addt_info *)(p+2);
4137                 //todo:
4138         }
4139
4140         if (channel > 14) {
4141                 if ((pregistrypriv->bw_mode & 0xf0) > 0)
4142                         cbw40_enable = 1;
4143         } else {
4144                 if ((pregistrypriv->bw_mode & 0x0f) > 0)
4145                         cbw40_enable = 1;
4146         }
4147
4148         //update cur_bwmode & cur_ch_offset
4149         if ((cbw40_enable) &&
4150                 (pmlmeinfo->HT_caps.u.HT_cap_element.HT_caps_info & BIT(1)) && 
4151                 (pmlmeinfo->HT_info.infos[0] & BIT(2)))
4152         {
4153                 int i;
4154                 u8      rf_type;
4155
4156                 padapter->HalFunc.GetHwRegHandler(padapter, HW_VAR_RF_TYPE, (u8 *)(&rf_type));
4157
4158                 //update the MCS rates
4159                 for (i = 0; i < 16; i++)
4160                 {
4161                         if((rf_type == RF_1T1R) || (rf_type == RF_1T2R))
4162                         {
4163                                 pmlmeinfo->HT_caps.u.HT_cap_element.MCS_rate[i] &= MCS_rate_1R[i];
4164                         }
4165                         else
4166                         {
4167                                 #ifdef CONFIG_DISABLE_MCS13TO15
4168                                 if(pmlmeext->cur_bwmode == CHANNEL_WIDTH_40 && pregistrypriv->wifi_spec != 1 )
4169                                 {
4170                                         pmlmeinfo->HT_caps.u.HT_cap_element.MCS_rate[i] &= MCS_rate_2R_MCS13TO15_OFF[i];
4171                                 }
4172                                 else
4173                                         pmlmeinfo->HT_caps.u.HT_cap_element.MCS_rate[i] &= MCS_rate_2R[i];
4174                                 #else
4175                                 pmlmeinfo->HT_caps.u.HT_cap_element.MCS_rate[i] &= MCS_rate_2R[i];
4176                                 #endif //CONFIG_DISABLE_MCS13TO15
4177                         }
4178                         #ifdef RTL8192C_RECONFIG_TO_1T1R
4179                         {
4180                                 pmlmeinfo->HT_caps.HT_cap_element.MCS_rate[i] &= MCS_rate_1R[i];
4181                         }
4182                         #endif
4183                 }
4184                 //switch to the 40M Hz mode accoring to the AP
4185                 //pmlmeext->cur_bwmode = CHANNEL_WIDTH_40;
4186                 switch ((pmlmeinfo->HT_info.infos[0] & 0x3))
4187                 {
4188                         case EXTCHNL_OFFSET_UPPER:
4189                                 pmlmeext->cur_ch_offset = HAL_PRIME_CHNL_OFFSET_LOWER;
4190                                 break;
4191                         
4192                         case EXTCHNL_OFFSET_LOWER:
4193                                 pmlmeext->cur_ch_offset = HAL_PRIME_CHNL_OFFSET_UPPER;
4194                                 break;
4195                                 
4196                         default:
4197                                 pmlmeext->cur_ch_offset = HAL_PRIME_CHNL_OFFSET_DONT_CARE;
4198                                 break;
4199                 }               
4200         }
4201
4202         //
4203         // Config SM Power Save setting
4204         //
4205         pmlmeinfo->SM_PS = (pmlmeinfo->HT_caps.u.HT_cap_element.HT_caps_info & 0x0C) >> 2;
4206         if(pmlmeinfo->SM_PS == WLAN_HT_CAP_SM_PS_STATIC)
4207         {
4208                 /*u8 i;
4209                 //update the MCS rates
4210                 for (i = 0; i < 16; i++)
4211                 {
4212                         pmlmeinfo->HT_caps.HT_cap_element.MCS_rate[i] &= MCS_rate_1R[i];
4213                 }*/
4214                 DBG_871X("%s(): WLAN_HT_CAP_SM_PS_STATIC\n",__FUNCTION__);
4215         }
4216
4217         //
4218         // Config current HT Protection mode.
4219         //
4220         pmlmeinfo->HT_protection = pmlmeinfo->HT_info.infos[1] & 0x3;
4221
4222         
4223         
4224 #if 0 //move to rtw_update_sta_info_client()
4225         //for A-MPDU Rx reordering buffer control for bmc_sta & sta_info
4226         //if A-MPDU Rx is enabled, reseting  rx_ordering_ctrl wstart_b(indicate_seq) to default value=0xffff
4227         //todo: check if AP can send A-MPDU packets
4228         bmc_sta = rtw_get_bcmc_stainfo(padapter);
4229         if(bmc_sta)
4230         {
4231                 for(i=0; i < 16 ; i++)
4232                 {
4233                         //preorder_ctrl = &precvpriv->recvreorder_ctrl[i];
4234                         preorder_ctrl = &bmc_sta->recvreorder_ctrl[i];
4235                         preorder_ctrl->enable = _FALSE;
4236                         preorder_ctrl->indicate_seq = 0xffff;
4237                         #ifdef DBG_RX_SEQ
4238                         DBG_871X("DBG_RX_SEQ %s:%d indicate_seq:%u \n", __FUNCTION__, __LINE__,
4239                                 preorder_ctrl->indicate_seq);
4240                         #endif
4241                         preorder_ctrl->wend_b= 0xffff;
4242                         preorder_ctrl->wsize_b = 64;//max_ampdu_sz;//ex. 32(kbytes) -> wsize_b=32
4243                 }
4244         }
4245
4246         psta = rtw_get_stainfo(&padapter->stapriv, pcur_network->network.MacAddress);
4247         if(psta)
4248         {
4249                 for(i=0; i < 16 ; i++)
4250                 {
4251                         //preorder_ctrl = &precvpriv->recvreorder_ctrl[i];
4252                         preorder_ctrl = &psta->recvreorder_ctrl[i];
4253                         preorder_ctrl->enable = _FALSE;
4254                         preorder_ctrl->indicate_seq = 0xffff;
4255                         #ifdef DBG_RX_SEQ
4256                         DBG_871X("DBG_RX_SEQ %s:%d indicate_seq:%u \n", __FUNCTION__, __LINE__,
4257                                 preorder_ctrl->indicate_seq);
4258                         #endif
4259                         preorder_ctrl->wend_b= 0xffff;
4260                         preorder_ctrl->wsize_b = 64;//max_ampdu_sz;//ex. 32(kbytes) -> wsize_b=32
4261                 }
4262         }
4263 #endif  
4264
4265 }
4266
4267 #ifdef CONFIG_TDLS
4268 void rtw_issue_addbareq_cmd_tdls(_adapter *padapter, struct xmit_frame *pxmitframe)
4269 {
4270         struct pkt_attrib *pattrib =&pxmitframe->attrib;
4271         struct sta_info *ptdls_sta = NULL;
4272         u8 issued;
4273         int priority;
4274         struct ht_priv  *phtpriv;
4275
4276         priority = pattrib->priority;
4277
4278         if(pattrib->direct_link == _TRUE)
4279         {
4280                 ptdls_sta = rtw_get_stainfo(&padapter->stapriv, pattrib->dst);
4281                 if((ptdls_sta != NULL) && (ptdls_sta->tdls_sta_state & TDLS_ESTABLISHED))
4282                 {
4283                         phtpriv = &ptdls_sta->htpriv;
4284
4285                         if((phtpriv->ht_option==_TRUE) && (phtpriv->ampdu_enable==_TRUE)) 
4286                         {
4287                                 issued = (phtpriv->agg_enable_bitmap>>priority)&0x1;
4288                                 issued |= (phtpriv->candidate_tid_bitmap>>priority)&0x1;
4289
4290                                 if(0==issued)
4291                                 {
4292                                         DBG_871X("rtw_issue_addbareq_cmd, p=%d\n", priority);
4293                                         ptdls_sta->htpriv.candidate_tid_bitmap |= BIT((u8)priority);
4294                                         rtw_addbareq_cmd(padapter,(u8)priority, pattrib->dst);
4295                                 }
4296                         }
4297                 }
4298         }
4299 }
4300 #endif //CONFIG_TDLS
4301
4302 void rtw_issue_addbareq_cmd(_adapter *padapter, struct xmit_frame *pxmitframe)
4303 {
4304         u8 issued;
4305         int priority;
4306         struct sta_info *psta=NULL;
4307         struct ht_priv  *phtpriv;
4308         struct pkt_attrib *pattrib =&pxmitframe->attrib;
4309         s32 bmcst = IS_MCAST(pattrib->ra);
4310
4311         //if(bmcst || (padapter->mlmepriv.LinkDetectInfo.bTxBusyTraffic == _FALSE))
4312         if(bmcst || (padapter->mlmepriv.LinkDetectInfo.NumTxOkInPeriod<100))    
4313                 return;
4314         
4315         priority = pattrib->priority;
4316
4317 #ifdef CONFIG_TDLS
4318         rtw_issue_addbareq_cmd_tdls(padapter, pxmitframe);
4319 #endif //CONFIG_TDLS
4320
4321         psta = rtw_get_stainfo(&padapter->stapriv, pattrib->ra);
4322         if(pattrib->psta != psta)
4323         {
4324                 DBG_871X("%s, pattrib->psta(%p) != psta(%p)\n", __func__, pattrib->psta, psta);
4325                 return;
4326         }
4327         
4328         if(psta==NULL)
4329         {
4330                 DBG_871X("%s, psta==NUL\n", __func__);
4331                 return;
4332         }
4333
4334         if(!(psta->state &_FW_LINKED))
4335         {
4336                 DBG_871X("%s, psta->state(0x%x) != _FW_LINKED\n", __func__, psta->state);
4337                 return;
4338         }       
4339
4340
4341         phtpriv = &psta->htpriv;
4342
4343         if((phtpriv->ht_option==_TRUE) && (phtpriv->ampdu_enable==_TRUE)) 
4344         {
4345                 issued = (phtpriv->agg_enable_bitmap>>priority)&0x1;
4346                 issued |= (phtpriv->candidate_tid_bitmap>>priority)&0x1;
4347
4348                 if(0==issued)
4349                 {
4350                         DBG_871X("rtw_issue_addbareq_cmd, p=%d\n", priority);
4351                         psta->htpriv.candidate_tid_bitmap |= BIT((u8)priority);
4352                         rtw_addbareq_cmd(padapter,(u8) priority, pattrib->ra);
4353                 }
4354         }
4355
4356 }
4357
4358 void rtw_append_exented_cap(_adapter *padapter, u8 *out_ie, uint *pout_len)
4359 {
4360         struct mlme_priv        *pmlmepriv = &padapter->mlmepriv;
4361         struct ht_priv          *phtpriv = &pmlmepriv->htpriv;
4362 #ifdef CONFIG_80211AC_VHT
4363         struct vht_priv *pvhtpriv = &pmlmepriv->vhtpriv;
4364 #endif //CONFIG_80211AC_VHT
4365         u8      cap_content[8] = {0};
4366         u8      *pframe;
4367
4368
4369         if (phtpriv->bss_coexist) {
4370                 SET_EXT_CAPABILITY_ELE_BSS_COEXIST(cap_content, 1);
4371         }
4372
4373 #ifdef CONFIG_80211AC_VHT
4374         if (pvhtpriv->vht_option) {
4375                 SET_EXT_CAPABILITY_ELE_OP_MODE_NOTIF(cap_content, 1);
4376         }
4377 #endif //CONFIG_80211AC_VHT
4378
4379         pframe = rtw_set_ie(out_ie+*pout_len, EID_EXTCapability, 8, cap_content , pout_len);
4380 }
4381 #endif
4382
4383 #ifdef CONFIG_LAYER2_ROAMING
4384 inline void rtw_set_to_roam(_adapter *adapter, u8 to_roam)
4385 {
4386         if (to_roam == 0)
4387                 adapter->mlmepriv.to_join = _FALSE;
4388         adapter->mlmepriv.to_roam = to_roam;
4389 }
4390
4391 inline u8 rtw_dec_to_roam(_adapter *adapter)
4392 {
4393         adapter->mlmepriv.to_roam--;
4394         return adapter->mlmepriv.to_roam;
4395 }
4396
4397 inline u8 rtw_to_roam(_adapter *adapter)
4398 {
4399         return adapter->mlmepriv.to_roam;
4400 }
4401
4402 void rtw_roaming(_adapter *padapter, struct wlan_network *tgt_network)
4403 {
4404         _irqL irqL;
4405         struct mlme_priv        *pmlmepriv = &padapter->mlmepriv;
4406
4407         _enter_critical_bh(&pmlmepriv->lock, &irqL);
4408         _rtw_roaming(padapter, tgt_network);
4409         _exit_critical_bh(&pmlmepriv->lock, &irqL);
4410 }
4411 void _rtw_roaming(_adapter *padapter, struct wlan_network *tgt_network)
4412 {
4413         struct mlme_priv        *pmlmepriv = &padapter->mlmepriv;
4414         struct wlan_network *cur_network = &pmlmepriv->cur_network;
4415         int do_join_r;
4416         
4417         if(0 < rtw_to_roam(padapter)) {
4418                 DBG_871X("roaming from %s("MAC_FMT"), length:%d\n",
4419                                 cur_network->network.Ssid.Ssid, MAC_ARG(cur_network->network.MacAddress),
4420                                 cur_network->network.Ssid.SsidLength);
4421                 _rtw_memcpy(&pmlmepriv->assoc_ssid, &cur_network->network.Ssid, sizeof(NDIS_802_11_SSID));
4422
4423                 pmlmepriv->assoc_by_bssid = _FALSE;
4424
4425 #ifdef CONFIG_WAPI_SUPPORT
4426                 rtw_wapi_return_all_sta_info(padapter);
4427 #endif
4428
4429                 while(1) {
4430                         if( _SUCCESS==(do_join_r=rtw_do_join(padapter)) ) {
4431                                 break;
4432                         } else {
4433                                 DBG_871X("roaming do_join return %d\n", do_join_r);
4434                                 rtw_dec_to_roam(padapter);
4435                                 
4436                                 if(rtw_to_roam(padapter) > 0) {
4437                                         continue;
4438                                 } else {
4439                                         DBG_871X("%s(%d) -to roaming fail, indicate_disconnect\n", __FUNCTION__,__LINE__);
4440                                         rtw_indicate_disconnect(padapter);
4441                                         break;
4442                                 }
4443                         }
4444                 }
4445         }
4446         
4447 }
4448 #endif /* CONFIG_LAYER2_ROAMING */
4449
4450 sint rtw_linked_check(_adapter *padapter)
4451 {
4452         if(     (check_fwstate(&padapter->mlmepriv, WIFI_AP_STATE) == _TRUE) ||
4453                         (check_fwstate(&padapter->mlmepriv, WIFI_ADHOC_STATE|WIFI_ADHOC_MASTER_STATE) == _TRUE))
4454         {
4455                 if(padapter->stapriv.asoc_sta_count > 2)
4456                         return _TRUE;
4457         }
4458         else
4459         {       //Station mode
4460                 if(check_fwstate(&padapter->mlmepriv, _FW_LINKED)== _TRUE)
4461                         return _TRUE;
4462         }
4463         return _FALSE;
4464 }
4465
4466 #ifdef CONFIG_CONCURRENT_MODE
4467 sint rtw_buddy_adapter_up(_adapter *padapter)
4468 {       
4469         sint res = _FALSE;
4470         
4471         if(padapter == NULL)
4472                 return res;
4473
4474
4475         if(padapter->pbuddy_adapter == NULL)
4476         {
4477                 res = _FALSE;
4478         }
4479         else if( (padapter->pbuddy_adapter->bDriverStopped) || (padapter->pbuddy_adapter->bSurpriseRemoved) ||
4480                 (padapter->pbuddy_adapter->bup == _FALSE) || (padapter->pbuddy_adapter->hw_init_completed == _FALSE))
4481         {               
4482                 res = _FALSE;
4483         }
4484         else
4485         {
4486                 res = _TRUE;
4487         }       
4488
4489         return res;     
4490
4491 }
4492
4493 sint check_buddy_fwstate(_adapter *padapter, sint state)
4494 {
4495         if(padapter == NULL)
4496                 return _FALSE;  
4497         
4498         if(padapter->pbuddy_adapter == NULL)
4499                 return _FALSE;  
4500                 
4501         if ((state == WIFI_FW_NULL_STATE) && 
4502                 (padapter->pbuddy_adapter->mlmepriv.fw_state == WIFI_FW_NULL_STATE))
4503                 return _TRUE;           
4504         
4505         if (padapter->pbuddy_adapter->mlmepriv.fw_state & state)
4506                 return _TRUE;
4507
4508         return _FALSE;
4509 }
4510
4511 u8 rtw_get_buddy_bBusyTraffic(_adapter *padapter)
4512 {
4513         if(padapter == NULL)
4514                 return _FALSE;  
4515         
4516         if(padapter->pbuddy_adapter == NULL)
4517                 return _FALSE;  
4518         
4519         return padapter->pbuddy_adapter->mlmepriv.LinkDetectInfo.bBusyTraffic;
4520 }
4521
4522 #endif //CONFIG_CONCURRENT_MODE
4523
4524 static const char *miracast_mode_str[] = {
4525         "DISABLED",
4526         "SOURCE",
4527         "SINK",
4528         "INVALID",
4529 };
4530
4531 const char *get_miracast_mode_str(int mode)
4532 {
4533         if (mode < MIRACAST_DISABLED || mode >= MIRACAST_INVALID)
4534                 mode = MIRACAST_INVALID;
4535
4536         return miracast_mode_str[mode];
4537 }
4538