Staging: rt2870: remove dead RT_BIG_ENDIAN code
[linux-2.6] / drivers / staging / rt2870 / sta / assoc.c
1 /*
2  *************************************************************************
3  * Ralink Tech Inc.
4  * 5F., No.36, Taiyuan St., Jhubei City,
5  * Hsinchu County 302,
6  * Taiwan, R.O.C.
7  *
8  * (c) Copyright 2002-2007, Ralink Technology, Inc.
9  *
10  * This program is free software; you can redistribute it and/or modify  *
11  * it under the terms of the GNU General Public License as published by  *
12  * the Free Software Foundation; either version 2 of the License, or     *
13  * (at your option) any later version.                                   *
14  *                                                                       *
15  * This program is distributed in the hope that it will be useful,       *
16  * but WITHOUT ANY WARRANTY; without even the implied warranty of        *
17  * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the         *
18  * GNU General Public License for more details.                          *
19  *                                                                       *
20  * You should have received a copy of the GNU General Public License     *
21  * along with this program; if not, write to the                         *
22  * Free Software Foundation, Inc.,                                       *
23  * 59 Temple Place - Suite 330, Boston, MA  02111-1307, USA.             *
24  *                                                                       *
25  *************************************************************************
26
27         Module Name:
28         assoc.c
29
30         Abstract:
31
32         Revision History:
33         Who                     When                    What
34         --------        ----------              ----------------------------------------------
35         John            2004-9-3                porting from RT2500
36 */
37 #include "../rt_config.h"
38
39 UCHAR   CipherWpaTemplate[] = {
40                 0xdd,                                   // WPA IE
41                 0x16,                                   // Length
42                 0x00, 0x50, 0xf2, 0x01, // oui
43                 0x01, 0x00,                             // Version
44                 0x00, 0x50, 0xf2, 0x02, // Multicast
45                 0x01, 0x00,                             // Number of unicast
46                 0x00, 0x50, 0xf2, 0x02, // unicast
47                 0x01, 0x00,                             // number of authentication method
48                 0x00, 0x50, 0xf2, 0x01  // authentication
49                 };
50
51 UCHAR   CipherWpa2Template[] = {
52                 0x30,                                   // RSN IE
53                 0x14,                                   // Length
54                 0x01, 0x00,                             // Version
55                 0x00, 0x0f, 0xac, 0x02, // group cipher, TKIP
56                 0x01, 0x00,                             // number of pairwise
57                 0x00, 0x0f, 0xac, 0x02, // unicast
58                 0x01, 0x00,                             // number of authentication method
59                 0x00, 0x0f, 0xac, 0x02, // authentication
60                 0x00, 0x00,                             // RSN capability
61                 };
62
63 UCHAR   Ccx2IeInfo[] = { 0x00, 0x40, 0x96, 0x03, 0x02};
64
65 /*
66         ==========================================================================
67         Description:
68                 association state machine init, including state transition and timer init
69         Parameters:
70                 S - pointer to the association state machine
71
72         IRQL = PASSIVE_LEVEL
73
74         ==========================================================================
75  */
76 VOID AssocStateMachineInit(
77         IN      PRTMP_ADAPTER   pAd,
78         IN  STATE_MACHINE *S,
79         OUT STATE_MACHINE_FUNC Trans[])
80 {
81         StateMachineInit(S, Trans, MAX_ASSOC_STATE, MAX_ASSOC_MSG, (STATE_MACHINE_FUNC)Drop, ASSOC_IDLE, ASSOC_MACHINE_BASE);
82
83         // first column
84         StateMachineSetAction(S, ASSOC_IDLE, MT2_MLME_ASSOC_REQ, (STATE_MACHINE_FUNC)MlmeAssocReqAction);
85         StateMachineSetAction(S, ASSOC_IDLE, MT2_MLME_REASSOC_REQ, (STATE_MACHINE_FUNC)MlmeReassocReqAction);
86         StateMachineSetAction(S, ASSOC_IDLE, MT2_MLME_DISASSOC_REQ, (STATE_MACHINE_FUNC)MlmeDisassocReqAction);
87         StateMachineSetAction(S, ASSOC_IDLE, MT2_PEER_DISASSOC_REQ, (STATE_MACHINE_FUNC)PeerDisassocAction);
88
89         // second column
90         StateMachineSetAction(S, ASSOC_WAIT_RSP, MT2_MLME_ASSOC_REQ, (STATE_MACHINE_FUNC)InvalidStateWhenAssoc);
91         StateMachineSetAction(S, ASSOC_WAIT_RSP, MT2_MLME_REASSOC_REQ, (STATE_MACHINE_FUNC)InvalidStateWhenReassoc);
92         StateMachineSetAction(S, ASSOC_WAIT_RSP, MT2_MLME_DISASSOC_REQ, (STATE_MACHINE_FUNC)InvalidStateWhenDisassociate);
93         StateMachineSetAction(S, ASSOC_WAIT_RSP, MT2_PEER_DISASSOC_REQ, (STATE_MACHINE_FUNC)PeerDisassocAction);
94         StateMachineSetAction(S, ASSOC_WAIT_RSP, MT2_PEER_ASSOC_RSP, (STATE_MACHINE_FUNC)PeerAssocRspAction);
95         //
96         // Patch 3Com AP MOde:3CRWE454G72
97         // We send Assoc request frame to this AP, it always send Reassoc Rsp not Associate Rsp.
98         //
99         StateMachineSetAction(S, ASSOC_WAIT_RSP, MT2_PEER_REASSOC_RSP, (STATE_MACHINE_FUNC)PeerAssocRspAction);
100         StateMachineSetAction(S, ASSOC_WAIT_RSP, MT2_ASSOC_TIMEOUT, (STATE_MACHINE_FUNC)AssocTimeoutAction);
101
102         // third column
103         StateMachineSetAction(S, REASSOC_WAIT_RSP, MT2_MLME_ASSOC_REQ, (STATE_MACHINE_FUNC)InvalidStateWhenAssoc);
104         StateMachineSetAction(S, REASSOC_WAIT_RSP, MT2_MLME_REASSOC_REQ, (STATE_MACHINE_FUNC)InvalidStateWhenReassoc);
105         StateMachineSetAction(S, REASSOC_WAIT_RSP, MT2_MLME_DISASSOC_REQ, (STATE_MACHINE_FUNC)InvalidStateWhenDisassociate);
106         StateMachineSetAction(S, REASSOC_WAIT_RSP, MT2_PEER_DISASSOC_REQ, (STATE_MACHINE_FUNC)PeerDisassocAction);
107         StateMachineSetAction(S, REASSOC_WAIT_RSP, MT2_PEER_REASSOC_RSP, (STATE_MACHINE_FUNC)PeerReassocRspAction);
108         //
109         // Patch, AP doesn't send Reassociate Rsp frame to Station.
110         //
111         StateMachineSetAction(S, REASSOC_WAIT_RSP, MT2_PEER_ASSOC_RSP, (STATE_MACHINE_FUNC)PeerReassocRspAction);
112         StateMachineSetAction(S, REASSOC_WAIT_RSP, MT2_REASSOC_TIMEOUT, (STATE_MACHINE_FUNC)ReassocTimeoutAction);
113
114         // fourth column
115         StateMachineSetAction(S, DISASSOC_WAIT_RSP, MT2_MLME_ASSOC_REQ, (STATE_MACHINE_FUNC)InvalidStateWhenAssoc);
116         StateMachineSetAction(S, DISASSOC_WAIT_RSP, MT2_MLME_REASSOC_REQ, (STATE_MACHINE_FUNC)InvalidStateWhenReassoc);
117         StateMachineSetAction(S, DISASSOC_WAIT_RSP, MT2_MLME_DISASSOC_REQ, (STATE_MACHINE_FUNC)InvalidStateWhenDisassociate);
118         StateMachineSetAction(S, DISASSOC_WAIT_RSP, MT2_PEER_DISASSOC_REQ, (STATE_MACHINE_FUNC)PeerDisassocAction);
119         StateMachineSetAction(S, DISASSOC_WAIT_RSP, MT2_DISASSOC_TIMEOUT, (STATE_MACHINE_FUNC)DisassocTimeoutAction);
120
121         // initialize the timer
122         RTMPInitTimer(pAd, &pAd->MlmeAux.AssocTimer, GET_TIMER_FUNCTION(AssocTimeout), pAd, FALSE);
123         RTMPInitTimer(pAd, &pAd->MlmeAux.ReassocTimer, GET_TIMER_FUNCTION(ReassocTimeout), pAd, FALSE);
124         RTMPInitTimer(pAd, &pAd->MlmeAux.DisassocTimer, GET_TIMER_FUNCTION(DisassocTimeout), pAd, FALSE);
125 }
126
127 /*
128         ==========================================================================
129         Description:
130                 Association timeout procedure. After association timeout, this function
131                 will be called and it will put a message into the MLME queue
132         Parameters:
133                 Standard timer parameters
134
135         IRQL = DISPATCH_LEVEL
136
137         ==========================================================================
138  */
139 VOID AssocTimeout(IN PVOID SystemSpecific1,
140                                  IN PVOID FunctionContext,
141                                  IN PVOID SystemSpecific2,
142                                  IN PVOID SystemSpecific3)
143 {
144         RTMP_ADAPTER *pAd = (RTMP_ADAPTER *)FunctionContext;
145
146         // Do nothing if the driver is starting halt state.
147         // This might happen when timer already been fired before cancel timer with mlmehalt
148         if (RTMP_TEST_FLAG(pAd, fRTMP_ADAPTER_HALT_IN_PROGRESS | fRTMP_ADAPTER_NIC_NOT_EXIST))
149                 return;
150
151         MlmeEnqueue(pAd, ASSOC_STATE_MACHINE, MT2_ASSOC_TIMEOUT, 0, NULL);
152         RT28XX_MLME_HANDLER(pAd);
153 }
154
155 /*
156         ==========================================================================
157         Description:
158                 Reassociation timeout procedure. After reassociation timeout, this
159                 function will be called and put a message into the MLME queue
160         Parameters:
161                 Standard timer parameters
162
163         IRQL = DISPATCH_LEVEL
164
165         ==========================================================================
166  */
167 VOID ReassocTimeout(IN PVOID SystemSpecific1,
168                                         IN PVOID FunctionContext,
169                                         IN PVOID SystemSpecific2,
170                                         IN PVOID SystemSpecific3)
171 {
172         RTMP_ADAPTER *pAd = (RTMP_ADAPTER *)FunctionContext;
173
174         // Do nothing if the driver is starting halt state.
175         // This might happen when timer already been fired before cancel timer with mlmehalt
176         if (RTMP_TEST_FLAG(pAd, fRTMP_ADAPTER_HALT_IN_PROGRESS | fRTMP_ADAPTER_NIC_NOT_EXIST))
177                 return;
178
179         MlmeEnqueue(pAd, ASSOC_STATE_MACHINE, MT2_REASSOC_TIMEOUT, 0, NULL);
180         RT28XX_MLME_HANDLER(pAd);
181 }
182
183 /*
184         ==========================================================================
185         Description:
186                 Disassociation timeout procedure. After disassociation timeout, this
187                 function will be called and put a message into the MLME queue
188         Parameters:
189                 Standard timer parameters
190
191         IRQL = DISPATCH_LEVEL
192
193         ==========================================================================
194  */
195 VOID DisassocTimeout(IN PVOID SystemSpecific1,
196                                         IN PVOID FunctionContext,
197                                         IN PVOID SystemSpecific2,
198                                         IN PVOID SystemSpecific3)
199 {
200         RTMP_ADAPTER *pAd = (RTMP_ADAPTER *)FunctionContext;
201
202         // Do nothing if the driver is starting halt state.
203         // This might happen when timer already been fired before cancel timer with mlmehalt
204         if (RTMP_TEST_FLAG(pAd, fRTMP_ADAPTER_HALT_IN_PROGRESS | fRTMP_ADAPTER_NIC_NOT_EXIST))
205                 return;
206
207         MlmeEnqueue(pAd, ASSOC_STATE_MACHINE, MT2_DISASSOC_TIMEOUT, 0, NULL);
208         RT28XX_MLME_HANDLER(pAd);
209 }
210
211 /*
212         ==========================================================================
213         Description:
214                 mlme assoc req handling procedure
215         Parameters:
216                 Adapter - Adapter pointer
217                 Elem - MLME Queue Element
218         Pre:
219                 the station has been authenticated and the following information is stored in the config
220                         -# SSID
221                         -# supported rates and their length
222                         -# listen interval (Adapter->StaCfg.default_listen_count)
223                         -# Transmit power  (Adapter->StaCfg.tx_power)
224         Post  :
225                 -# An association request frame is generated and sent to the air
226                 -# Association timer starts
227                 -# Association state -> ASSOC_WAIT_RSP
228
229         IRQL = DISPATCH_LEVEL
230
231         ==========================================================================
232  */
233 VOID MlmeAssocReqAction(
234         IN PRTMP_ADAPTER pAd,
235         IN MLME_QUEUE_ELEM *Elem)
236 {
237         UCHAR                   ApAddr[6];
238         HEADER_802_11   AssocHdr;
239         UCHAR                   Ccx2Len = 5;
240         UCHAR                   WmeIe[9] = {IE_VENDOR_SPECIFIC, 0x07, 0x00, 0x50, 0xf2, 0x02, 0x00, 0x01, 0x00};
241         USHORT                  ListenIntv;
242         ULONG                   Timeout;
243         USHORT                  CapabilityInfo;
244         BOOLEAN                 TimerCancelled;
245         PUCHAR                  pOutBuffer = NULL;
246         NDIS_STATUS             NStatus;
247         ULONG                   FrameLen = 0;
248         ULONG                   tmp;
249         USHORT                  VarIesOffset;
250         UCHAR                   CkipFlag;
251         UCHAR                   CkipNegotiationBuffer[CKIP_NEGOTIATION_LENGTH];
252         UCHAR                   AironetCkipIe = IE_AIRONET_CKIP;
253         UCHAR                   AironetCkipLen = CKIP_NEGOTIATION_LENGTH;
254         UCHAR                   AironetIPAddressIE = IE_AIRONET_IPADDRESS;
255         UCHAR                   AironetIPAddressLen = AIRONET_IPADDRESS_LENGTH;
256         UCHAR                   AironetIPAddressBuffer[AIRONET_IPADDRESS_LENGTH] = {0x00, 0x40, 0x96, 0x00, 0x00, 0x00, 0x00, 0x00, 0x02, 0x00};
257         USHORT                  Status;
258
259         // Block all authentication request durning WPA block period
260         if (pAd->StaCfg.bBlockAssoc == TRUE)
261         {
262                 DBGPRINT(RT_DEBUG_TRACE, ("ASSOC - Block Assoc request durning WPA block period!\n"));
263                 pAd->Mlme.AssocMachine.CurrState = ASSOC_IDLE;
264                 Status = MLME_STATE_MACHINE_REJECT;
265                 MlmeEnqueue(pAd, MLME_CNTL_STATE_MACHINE, MT2_ASSOC_CONF, 2, &Status);
266         }
267         // check sanity first
268         else if (MlmeAssocReqSanity(pAd, Elem->Msg, Elem->MsgLen, ApAddr, &CapabilityInfo, &Timeout, &ListenIntv))
269         {
270                 RTMPCancelTimer(&pAd->MlmeAux.AssocTimer, &TimerCancelled);
271                 COPY_MAC_ADDR(pAd->MlmeAux.Bssid, ApAddr);
272
273                 // Get an unused nonpaged memory
274                 NStatus = MlmeAllocateMemory(pAd, &pOutBuffer);
275                 if (NStatus != NDIS_STATUS_SUCCESS)
276                 {
277                         DBGPRINT(RT_DEBUG_TRACE,("ASSOC - MlmeAssocReqAction() allocate memory failed \n"));
278                         pAd->Mlme.AssocMachine.CurrState = ASSOC_IDLE;
279                         Status = MLME_FAIL_NO_RESOURCE;
280                         MlmeEnqueue(pAd, MLME_CNTL_STATE_MACHINE, MT2_ASSOC_CONF, 2, &Status);
281                         return;
282                 }
283
284                 // Add by James 03/06/27
285                 pAd->StaCfg.AssocInfo.Length = sizeof(NDIS_802_11_ASSOCIATION_INFORMATION);
286                 // Association don't need to report MAC address
287                 pAd->StaCfg.AssocInfo.AvailableRequestFixedIEs =
288                         NDIS_802_11_AI_REQFI_CAPABILITIES | NDIS_802_11_AI_REQFI_LISTENINTERVAL;
289                 pAd->StaCfg.AssocInfo.RequestFixedIEs.Capabilities = CapabilityInfo;
290                 pAd->StaCfg.AssocInfo.RequestFixedIEs.ListenInterval = ListenIntv;
291                 // Only reassociate need this
292                 //COPY_MAC_ADDR(pAd->StaCfg.AssocInfo.RequestFixedIEs.CurrentAPAddress, ApAddr);
293                 pAd->StaCfg.AssocInfo.OffsetRequestIEs = sizeof(NDIS_802_11_ASSOCIATION_INFORMATION);
294
295         NdisZeroMemory(pAd->StaCfg.ReqVarIEs, MAX_VIE_LEN);
296                 // First add SSID
297                 VarIesOffset = 0;
298                 NdisMoveMemory(pAd->StaCfg.ReqVarIEs + VarIesOffset, &SsidIe, 1);
299                 VarIesOffset += 1;
300                 NdisMoveMemory(pAd->StaCfg.ReqVarIEs + VarIesOffset, &pAd->MlmeAux.SsidLen, 1);
301                 VarIesOffset += 1;
302                 NdisMoveMemory(pAd->StaCfg.ReqVarIEs + VarIesOffset, pAd->MlmeAux.Ssid, pAd->MlmeAux.SsidLen);
303                 VarIesOffset += pAd->MlmeAux.SsidLen;
304
305                 // Second add Supported rates
306                 NdisMoveMemory(pAd->StaCfg.ReqVarIEs + VarIesOffset, &SupRateIe, 1);
307                 VarIesOffset += 1;
308                 NdisMoveMemory(pAd->StaCfg.ReqVarIEs + VarIesOffset, &pAd->MlmeAux.SupRateLen, 1);
309                 VarIesOffset += 1;
310                 NdisMoveMemory(pAd->StaCfg.ReqVarIEs + VarIesOffset, pAd->MlmeAux.SupRate, pAd->MlmeAux.SupRateLen);
311                 VarIesOffset += pAd->MlmeAux.SupRateLen;
312                 // End Add by James
313
314         if ((pAd->CommonCfg.Channel > 14) &&
315             (pAd->CommonCfg.bIEEE80211H == TRUE))
316             CapabilityInfo |= 0x0100;
317
318                 DBGPRINT(RT_DEBUG_TRACE, ("ASSOC - Send ASSOC request...\n"));
319                 MgtMacHeaderInit(pAd, &AssocHdr, SUBTYPE_ASSOC_REQ, 0, ApAddr, ApAddr);
320
321                 // Build basic frame first
322                 MakeOutgoingFrame(pOutBuffer,                           &FrameLen,
323                                                   sizeof(HEADER_802_11),        &AssocHdr,
324                                                   2,                                            &CapabilityInfo,
325                                                   2,                                            &ListenIntv,
326                                                   1,                                            &SsidIe,
327                                                   1,                                            &pAd->MlmeAux.SsidLen,
328                                                   pAd->MlmeAux.SsidLen,         pAd->MlmeAux.Ssid,
329                                                   1,                                            &SupRateIe,
330                                                   1,                                            &pAd->MlmeAux.SupRateLen,
331                                                   pAd->MlmeAux.SupRateLen,  pAd->MlmeAux.SupRate,
332                                                   END_OF_ARGS);
333
334                 if (pAd->MlmeAux.ExtRateLen != 0)
335                 {
336                         MakeOutgoingFrame(pOutBuffer + FrameLen,    &tmp,
337                                                           1,                        &ExtRateIe,
338                                                           1,                        &pAd->MlmeAux.ExtRateLen,
339                                                           pAd->MlmeAux.ExtRateLen,  pAd->MlmeAux.ExtRate,
340                                                           END_OF_ARGS);
341                         FrameLen += tmp;
342                 }
343
344 #ifdef DOT11_N_SUPPORT
345                 // HT
346                 if ((pAd->MlmeAux.HtCapabilityLen > 0) && (pAd->CommonCfg.PhyMode >= PHY_11ABGN_MIXED))
347                 {
348                         ULONG TmpLen;
349                         UCHAR HtLen;
350                         UCHAR BROADCOM[4] = {0x0, 0x90, 0x4c, 0x33};
351                         if (pAd->StaActive.SupportedPhyInfo.bPreNHt == TRUE)
352                         {
353                                 HtLen = SIZE_HT_CAP_IE + 4;
354                                 MakeOutgoingFrame(pOutBuffer + FrameLen,            &TmpLen,
355                                                           1,                                &WpaIe,
356                                                           1,                                &HtLen,
357                                                           4,                                &BROADCOM[0],
358                                                          pAd->MlmeAux.HtCapabilityLen,          &pAd->MlmeAux.HtCapability,
359                                                           END_OF_ARGS);
360                         }
361                         else
362                         {
363                                 MakeOutgoingFrame(pOutBuffer + FrameLen,            &TmpLen,
364                                                           1,                                &HtCapIe,
365                                                           1,                                &pAd->MlmeAux.HtCapabilityLen,
366                                                          pAd->MlmeAux.HtCapabilityLen,          &pAd->MlmeAux.HtCapability,
367                                                           END_OF_ARGS);
368                         }
369                         FrameLen += TmpLen;
370                 }
371 #endif // DOT11_N_SUPPORT //
372
373                 // add Ralink proprietary IE to inform AP this STA is going to use AGGREGATION or PIGGY-BACK+AGGREGATION
374                 // Case I: (Aggregation + Piggy-Back)
375                 // 1. user enable aggregation, AND
376                 // 2. Mac support piggy-back
377                 // 3. AP annouces it's PIGGY-BACK+AGGREGATION-capable in BEACON
378                 // Case II: (Aggregation)
379                 // 1. user enable aggregation, AND
380                 // 2. AP annouces it's AGGREGATION-capable in BEACON
381                 if (pAd->CommonCfg.bAggregationCapable)
382                 {
383                         if ((pAd->CommonCfg.bPiggyBackCapable) && ((pAd->MlmeAux.APRalinkIe & 0x00000003) == 3))
384                         {
385                                 ULONG TmpLen;
386                                 UCHAR RalinkIe[9] = {IE_VENDOR_SPECIFIC, 7, 0x00, 0x0c, 0x43, 0x03, 0x00, 0x00, 0x00};
387                                 MakeOutgoingFrame(pOutBuffer+FrameLen,           &TmpLen,
388                                                                   9,                             RalinkIe,
389                                                                   END_OF_ARGS);
390                                 FrameLen += TmpLen;
391                         }
392                         else if (pAd->MlmeAux.APRalinkIe & 0x00000001)
393                         {
394                                 ULONG TmpLen;
395                                 UCHAR RalinkIe[9] = {IE_VENDOR_SPECIFIC, 7, 0x00, 0x0c, 0x43, 0x01, 0x00, 0x00, 0x00};
396                                 MakeOutgoingFrame(pOutBuffer+FrameLen,           &TmpLen,
397                                                                   9,                             RalinkIe,
398                                                                   END_OF_ARGS);
399                                 FrameLen += TmpLen;
400                         }
401                 }
402                 else
403                 {
404                         ULONG TmpLen;
405                         UCHAR RalinkIe[9] = {IE_VENDOR_SPECIFIC, 7, 0x00, 0x0c, 0x43, 0x06, 0x00, 0x00, 0x00};
406                         MakeOutgoingFrame(pOutBuffer+FrameLen,           &TmpLen,
407                                                           9,                                             RalinkIe,
408                                                           END_OF_ARGS);
409                         FrameLen += TmpLen;
410                 }
411
412                 if (pAd->MlmeAux.APEdcaParm.bValid)
413                 {
414                         if (pAd->CommonCfg.bAPSDCapable && pAd->MlmeAux.APEdcaParm.bAPSDCapable)
415                         {
416                                 QBSS_STA_INFO_PARM QosInfo;
417
418                                 NdisZeroMemory(&QosInfo, sizeof(QBSS_STA_INFO_PARM));
419                                 QosInfo.UAPSD_AC_BE = pAd->CommonCfg.bAPSDAC_BE;
420                                 QosInfo.UAPSD_AC_BK = pAd->CommonCfg.bAPSDAC_BK;
421                                 QosInfo.UAPSD_AC_VI = pAd->CommonCfg.bAPSDAC_VI;
422                                 QosInfo.UAPSD_AC_VO = pAd->CommonCfg.bAPSDAC_VO;
423                                 QosInfo.MaxSPLength = pAd->CommonCfg.MaxSPLength;
424                                 WmeIe[8] |= *(PUCHAR)&QosInfo;
425                         }
426                         else
427                         {
428                 // The Parameter Set Count is set to Â¡Â§0¡¨ in the association request frames
429                 // WmeIe[8] |= (pAd->MlmeAux.APEdcaParm.EdcaUpdateCount & 0x0f);
430                         }
431
432                         MakeOutgoingFrame(pOutBuffer + FrameLen,    &tmp,
433                                                           9,                        &WmeIe[0],
434                                                           END_OF_ARGS);
435                         FrameLen += tmp;
436                 }
437
438                 //
439                 // Let WPA(#221) Element ID on the end of this association frame.
440                 // Otherwise some AP will fail on parsing Element ID and set status fail on Assoc Rsp.
441                 // For example: Put Vendor Specific IE on the front of WPA IE.
442                 // This happens on AP (Model No:Linksys WRK54G)
443                 //
444                 if (((pAd->StaCfg.AuthMode == Ndis802_11AuthModeWPAPSK) ||
445             (pAd->StaCfg.AuthMode == Ndis802_11AuthModeWPA2PSK) ||
446             (pAd->StaCfg.AuthMode == Ndis802_11AuthModeWPA) ||
447             (pAd->StaCfg.AuthMode == Ndis802_11AuthModeWPA2)
448                         )
449             )
450                 {
451                         UCHAR RSNIe = IE_WPA;
452
453                         if ((pAd->StaCfg.AuthMode == Ndis802_11AuthModeWPA2PSK) ||
454                 (pAd->StaCfg.AuthMode == Ndis802_11AuthModeWPA2))
455                         {
456                                 RSNIe = IE_WPA2;
457                         }
458
459                 RTMPMakeRSNIE(pAd, pAd->StaCfg.AuthMode, pAd->StaCfg.WepStatus, BSS0);
460
461             // Check for WPA PMK cache list
462                         if (pAd->StaCfg.AuthMode == Ndis802_11AuthModeWPA2)
463                         {
464                             INT     idx;
465                 BOOLEAN FoundPMK = FALSE;
466                                 // Search chched PMKID, append it if existed
467                                 for (idx = 0; idx < PMKID_NO; idx++)
468                                 {
469                                         if (NdisEqualMemory(ApAddr, &pAd->StaCfg.SavedPMK[idx].BSSID, 6))
470                                         {
471                                                 FoundPMK = TRUE;
472                                                 break;
473                                         }
474                                 }
475
476                                 if (FoundPMK)
477                                 {
478                                         // Set PMK number
479                                         *(PUSHORT) &pAd->StaCfg.RSN_IE[pAd->StaCfg.RSNIE_Len] = 1;
480                                         NdisMoveMemory(&pAd->StaCfg.RSN_IE[pAd->StaCfg.RSNIE_Len + 2], &pAd->StaCfg.SavedPMK[idx].PMKID, 16);
481                     pAd->StaCfg.RSNIE_Len += 18;
482                                 }
483                         }
484
485                         {
486                                 MakeOutgoingFrame(pOutBuffer + FrameLen,                &tmp,
487                                                         1,                              &RSNIe,
488                                                 1,                              &pAd->StaCfg.RSNIE_Len,
489                                                 pAd->StaCfg.RSNIE_Len,                  pAd->StaCfg.RSN_IE,
490                                                 END_OF_ARGS);
491                         }
492
493                         FrameLen += tmp;
494
495                         {
496                     // Append Variable IE
497                     NdisMoveMemory(pAd->StaCfg.ReqVarIEs + VarIesOffset, &RSNIe, 1);
498                     VarIesOffset += 1;
499                     NdisMoveMemory(pAd->StaCfg.ReqVarIEs + VarIesOffset, &pAd->StaCfg.RSNIE_Len, 1);
500                     VarIesOffset += 1;
501                         }
502                         NdisMoveMemory(pAd->StaCfg.ReqVarIEs + VarIesOffset, pAd->StaCfg.RSN_IE, pAd->StaCfg.RSNIE_Len);
503                         VarIesOffset += pAd->StaCfg.RSNIE_Len;
504
505                         // Set Variable IEs Length
506                         pAd->StaCfg.ReqVarIELen = VarIesOffset;
507                 }
508
509                 // We have update that at PeerBeaconAtJoinRequest()
510                 CkipFlag = pAd->StaCfg.CkipFlag;
511                 if (CkipFlag != 0)
512                 {
513                         NdisZeroMemory(CkipNegotiationBuffer, CKIP_NEGOTIATION_LENGTH);
514                         CkipNegotiationBuffer[2] = 0x66;
515                         // Make it try KP & MIC, since we have to follow the result from AssocRsp
516                         CkipNegotiationBuffer[8] = 0x18;
517                         CkipNegotiationBuffer[CKIP_NEGOTIATION_LENGTH - 1] = 0x22;
518                         CkipFlag = 0x18;
519
520                         MakeOutgoingFrame(pOutBuffer + FrameLen,        &tmp,
521                                                 1,                                                              &AironetCkipIe,
522                                                 1,                                                              &AironetCkipLen,
523                                                 AironetCkipLen,                                 CkipNegotiationBuffer,
524                                                 END_OF_ARGS);
525                         FrameLen += tmp;
526                 }
527
528                 // Add CCX v2 request if CCX2 admin state is on
529                 if (pAd->StaCfg.CCXControl.field.Enable == 1)
530                 {
531
532                         //
533                         // Add AironetIPAddressIE for Cisco CCX 2.X
534                         // Add CCX Version
535                         //
536                         MakeOutgoingFrame(pOutBuffer + FrameLen, &tmp,
537                                                 1,                                                      &AironetIPAddressIE,
538                                                 1,                                                      &AironetIPAddressLen,
539                                                 AironetIPAddressLen,            AironetIPAddressBuffer,
540                                                 1,                                                      &Ccx2Ie,
541                                                 1,                                                      &Ccx2Len,
542                                                 Ccx2Len,                                    Ccx2IeInfo,
543                                                 END_OF_ARGS);
544                         FrameLen += tmp;
545
546                         // Add by James 03/06/27
547                         // Set Variable IEs Length
548                         pAd->StaCfg.ReqVarIELen = VarIesOffset;
549                         pAd->StaCfg.AssocInfo.RequestIELength = VarIesOffset;
550
551                         // OffsetResponseIEs follow ReqVarIE
552                         pAd->StaCfg.AssocInfo.OffsetResponseIEs = sizeof(NDIS_802_11_ASSOCIATION_INFORMATION) + pAd->StaCfg.ReqVarIELen;
553                         // End Add by James
554                 }
555
556
557                 MiniportMMRequest(pAd, 0, pOutBuffer, FrameLen);
558                 MlmeFreeMemory(pAd, pOutBuffer);
559
560                 RTMPSetTimer(&pAd->MlmeAux.AssocTimer, Timeout);
561                 pAd->Mlme.AssocMachine.CurrState = ASSOC_WAIT_RSP;
562         }
563         else
564         {
565                 DBGPRINT(RT_DEBUG_TRACE,("ASSOC - MlmeAssocReqAction() sanity check failed. BUG!!!!!! \n"));
566                 pAd->Mlme.AssocMachine.CurrState = ASSOC_IDLE;
567                 Status = MLME_INVALID_FORMAT;
568                 MlmeEnqueue(pAd, MLME_CNTL_STATE_MACHINE, MT2_ASSOC_CONF, 2, &Status);
569         }
570
571 }
572
573 /*
574         ==========================================================================
575         Description:
576                 mlme reassoc req handling procedure
577         Parameters:
578                 Elem -
579         Pre:
580                 -# SSID  (Adapter->StaCfg.ssid[])
581                 -# BSSID (AP address, Adapter->StaCfg.bssid)
582                 -# Supported rates (Adapter->StaCfg.supported_rates[])
583                 -# Supported rates length (Adapter->StaCfg.supported_rates_len)
584                 -# Tx power (Adapter->StaCfg.tx_power)
585
586         IRQL = DISPATCH_LEVEL
587
588         ==========================================================================
589  */
590 VOID MlmeReassocReqAction(
591         IN PRTMP_ADAPTER pAd,
592         IN MLME_QUEUE_ELEM *Elem)
593 {
594         UCHAR                   ApAddr[6];
595         HEADER_802_11   ReassocHdr;
596         UCHAR                   Ccx2Len = 5;
597         UCHAR                   WmeIe[9] = {IE_VENDOR_SPECIFIC, 0x07, 0x00, 0x50, 0xf2, 0x02, 0x00, 0x01, 0x00};
598         USHORT                  CapabilityInfo, ListenIntv;
599         ULONG                   Timeout;
600         ULONG                   FrameLen = 0;
601         BOOLEAN                 TimerCancelled;
602         NDIS_STATUS             NStatus;
603         ULONG                   tmp;
604         PUCHAR                  pOutBuffer = NULL;
605         USHORT                  Status;
606
607         // Block all authentication request durning WPA block period
608         if (pAd->StaCfg.bBlockAssoc == TRUE)
609         {
610                 DBGPRINT(RT_DEBUG_TRACE, ("ASSOC - Block ReAssoc request durning WPA block period!\n"));
611                 pAd->Mlme.AssocMachine.CurrState = ASSOC_IDLE;
612                 Status = MLME_STATE_MACHINE_REJECT;
613                 MlmeEnqueue(pAd, MLME_CNTL_STATE_MACHINE, MT2_REASSOC_CONF, 2, &Status);
614         }
615         // the parameters are the same as the association
616         else if(MlmeAssocReqSanity(pAd, Elem->Msg, Elem->MsgLen, ApAddr, &CapabilityInfo, &Timeout, &ListenIntv))
617         {
618                 RTMPCancelTimer(&pAd->MlmeAux.ReassocTimer, &TimerCancelled);
619
620                 NStatus = MlmeAllocateMemory(pAd, &pOutBuffer);  //Get an unused nonpaged memory
621                 if(NStatus != NDIS_STATUS_SUCCESS)
622                 {
623                         DBGPRINT(RT_DEBUG_TRACE,("ASSOC - MlmeReassocReqAction() allocate memory failed \n"));
624                         pAd->Mlme.AssocMachine.CurrState = ASSOC_IDLE;
625                         Status = MLME_FAIL_NO_RESOURCE;
626                         MlmeEnqueue(pAd, MLME_CNTL_STATE_MACHINE, MT2_REASSOC_CONF, 2, &Status);
627                         return;
628                 }
629
630                 COPY_MAC_ADDR(pAd->MlmeAux.Bssid, ApAddr);
631
632                 // make frame, use bssid as the AP address??
633                 DBGPRINT(RT_DEBUG_TRACE, ("ASSOC - Send RE-ASSOC request...\n"));
634                 MgtMacHeaderInit(pAd, &ReassocHdr, SUBTYPE_REASSOC_REQ, 0, ApAddr, ApAddr);
635                 MakeOutgoingFrame(pOutBuffer,               &FrameLen,
636                                                   sizeof(HEADER_802_11),    &ReassocHdr,
637                                                   2,                        &CapabilityInfo,
638                                                   2,                        &ListenIntv,
639                                                   MAC_ADDR_LEN,             ApAddr,
640                                                   1,                        &SsidIe,
641                                                   1,                        &pAd->MlmeAux.SsidLen,
642                                                   pAd->MlmeAux.SsidLen,     pAd->MlmeAux.Ssid,
643                                                   1,                        &SupRateIe,
644                                                   1,                                            &pAd->MlmeAux.SupRateLen,
645                                                   pAd->MlmeAux.SupRateLen,  pAd->MlmeAux.SupRate,
646                                                   END_OF_ARGS);
647
648                 if (pAd->MlmeAux.ExtRateLen != 0)
649                 {
650                         MakeOutgoingFrame(pOutBuffer + FrameLen,        &tmp,
651                                                           1,                            &ExtRateIe,
652                                                           1,                            &pAd->MlmeAux.ExtRateLen,
653                                                           pAd->MlmeAux.ExtRateLen,          pAd->MlmeAux.ExtRate,
654                                                           END_OF_ARGS);
655                         FrameLen += tmp;
656                 }
657
658                 if (pAd->MlmeAux.APEdcaParm.bValid)
659                 {
660                         if (pAd->CommonCfg.bAPSDCapable && pAd->MlmeAux.APEdcaParm.bAPSDCapable)
661                         {
662                                 QBSS_STA_INFO_PARM QosInfo;
663
664                                 NdisZeroMemory(&QosInfo, sizeof(QBSS_STA_INFO_PARM));
665                                 QosInfo.UAPSD_AC_BE = pAd->CommonCfg.bAPSDAC_BE;
666                                 QosInfo.UAPSD_AC_BK = pAd->CommonCfg.bAPSDAC_BK;
667                                 QosInfo.UAPSD_AC_VI = pAd->CommonCfg.bAPSDAC_VI;
668                                 QosInfo.UAPSD_AC_VO = pAd->CommonCfg.bAPSDAC_VO;
669                                 QosInfo.MaxSPLength = pAd->CommonCfg.MaxSPLength;
670                                 WmeIe[8] |= *(PUCHAR)&QosInfo;
671                         }
672
673                         MakeOutgoingFrame(pOutBuffer + FrameLen,    &tmp,
674                                                           9,                        &WmeIe[0],
675                                                           END_OF_ARGS);
676                         FrameLen += tmp;
677                 }
678
679 #ifdef DOT11_N_SUPPORT
680                 // HT
681                 if ((pAd->MlmeAux.HtCapabilityLen > 0) && (pAd->CommonCfg.PhyMode >= PHY_11ABGN_MIXED))
682                 {
683                         ULONG TmpLen;
684                         UCHAR HtLen;
685                         UCHAR BROADCOM[4] = {0x0, 0x90, 0x4c, 0x33};
686                         if (pAd->StaActive.SupportedPhyInfo.bPreNHt == TRUE)
687                         {
688                                 HtLen = SIZE_HT_CAP_IE + 4;
689                                 MakeOutgoingFrame(pOutBuffer + FrameLen,            &TmpLen,
690                                                           1,                                &WpaIe,
691                                                           1,                                &HtLen,
692                                                           4,                                &BROADCOM[0],
693                                                          pAd->MlmeAux.HtCapabilityLen,          &pAd->MlmeAux.HtCapability,
694                                                           END_OF_ARGS);
695                         }
696                         else
697                         {
698                                 MakeOutgoingFrame(pOutBuffer + FrameLen,            &TmpLen,
699                                                           1,                                &HtCapIe,
700                                                           1,                                &pAd->MlmeAux.HtCapabilityLen,
701                                                          pAd->MlmeAux.HtCapabilityLen,          &pAd->MlmeAux.HtCapability,
702                                                           END_OF_ARGS);
703                         }
704                         FrameLen += TmpLen;
705                 }
706 #endif // DOT11_N_SUPPORT //
707
708                 // add Ralink proprietary IE to inform AP this STA is going to use AGGREGATION or PIGGY-BACK+AGGREGATION
709                 // Case I: (Aggregation + Piggy-Back)
710                 // 1. user enable aggregation, AND
711                 // 2. Mac support piggy-back
712                 // 3. AP annouces it's PIGGY-BACK+AGGREGATION-capable in BEACON
713                 // Case II: (Aggregation)
714                 // 1. user enable aggregation, AND
715                 // 2. AP annouces it's AGGREGATION-capable in BEACON
716                 if (pAd->CommonCfg.bAggregationCapable)
717                 {
718                         if ((pAd->CommonCfg.bPiggyBackCapable) && ((pAd->MlmeAux.APRalinkIe & 0x00000003) == 3))
719                         {
720                                 ULONG TmpLen;
721                                 UCHAR RalinkIe[9] = {IE_VENDOR_SPECIFIC, 7, 0x00, 0x0c, 0x43, 0x03, 0x00, 0x00, 0x00};
722                                 MakeOutgoingFrame(pOutBuffer+FrameLen,           &TmpLen,
723                                                                   9,                             RalinkIe,
724                                                                   END_OF_ARGS);
725                                 FrameLen += TmpLen;
726                         }
727                         else if (pAd->MlmeAux.APRalinkIe & 0x00000001)
728                         {
729                                 ULONG TmpLen;
730                                 UCHAR RalinkIe[9] = {IE_VENDOR_SPECIFIC, 7, 0x00, 0x0c, 0x43, 0x01, 0x00, 0x00, 0x00};
731                                 MakeOutgoingFrame(pOutBuffer+FrameLen,           &TmpLen,
732                                                                   9,                             RalinkIe,
733                                                                   END_OF_ARGS);
734                                 FrameLen += TmpLen;
735                         }
736                 }
737                 else
738                 {
739                         ULONG TmpLen;
740                         UCHAR RalinkIe[9] = {IE_VENDOR_SPECIFIC, 7, 0x00, 0x0c, 0x43, 0x04, 0x00, 0x00, 0x00};
741                         MakeOutgoingFrame(pOutBuffer+FrameLen,           &TmpLen,
742                                                           9,                                             RalinkIe,
743                                                           END_OF_ARGS);
744                         FrameLen += TmpLen;
745                 }
746
747                 // Add CCX v2 request if CCX2 admin state is on
748                 if (pAd->StaCfg.CCXControl.field.Enable == 1)
749                 {
750                         //
751                         // Add CCX Version
752                         //
753                         MakeOutgoingFrame(pOutBuffer + FrameLen, &tmp,
754                                                 1,                                                      &Ccx2Ie,
755                                                 1,                                                      &Ccx2Len,
756                                                 Ccx2Len,                                    Ccx2IeInfo,
757                                                 END_OF_ARGS);
758                         FrameLen += tmp;
759                 }
760
761                 MiniportMMRequest(pAd, 0, pOutBuffer, FrameLen);
762                 MlmeFreeMemory(pAd, pOutBuffer);
763
764                 RTMPSetTimer(&pAd->MlmeAux.ReassocTimer, Timeout); /* in mSec */
765                 pAd->Mlme.AssocMachine.CurrState = REASSOC_WAIT_RSP;
766         }
767         else
768         {
769                 DBGPRINT(RT_DEBUG_TRACE,("ASSOC - MlmeReassocReqAction() sanity check failed. BUG!!!! \n"));
770                 pAd->Mlme.AssocMachine.CurrState = ASSOC_IDLE;
771                 Status = MLME_INVALID_FORMAT;
772                 MlmeEnqueue(pAd, MLME_CNTL_STATE_MACHINE, MT2_REASSOC_CONF, 2, &Status);
773         }
774 }
775
776 /*
777         ==========================================================================
778         Description:
779                 Upper layer issues disassoc request
780         Parameters:
781                 Elem -
782
783         IRQL = PASSIVE_LEVEL
784
785         ==========================================================================
786  */
787 VOID MlmeDisassocReqAction(
788         IN PRTMP_ADAPTER pAd,
789         IN MLME_QUEUE_ELEM *Elem)
790 {
791         PMLME_DISASSOC_REQ_STRUCT pDisassocReq;
792         HEADER_802_11         DisassocHdr;
793         PHEADER_802_11        pDisassocHdr;
794         PUCHAR                pOutBuffer = NULL;
795         ULONG                 FrameLen = 0;
796         NDIS_STATUS           NStatus;
797         BOOLEAN               TimerCancelled;
798         ULONG                 Timeout = 0;
799         USHORT                Status;
800
801         // skip sanity check
802         pDisassocReq = (PMLME_DISASSOC_REQ_STRUCT)(Elem->Msg);
803
804         NStatus = MlmeAllocateMemory(pAd, &pOutBuffer);  //Get an unused nonpaged memory
805         if (NStatus != NDIS_STATUS_SUCCESS)
806         {
807                 DBGPRINT(RT_DEBUG_TRACE, ("ASSOC - MlmeDisassocReqAction() allocate memory failed\n"));
808                 pAd->Mlme.AssocMachine.CurrState = ASSOC_IDLE;
809                 Status = MLME_FAIL_NO_RESOURCE;
810                 MlmeEnqueue(pAd, MLME_CNTL_STATE_MACHINE, MT2_DISASSOC_CONF, 2, &Status);
811                 return;
812         }
813
814
815
816         RTMPCancelTimer(&pAd->MlmeAux.DisassocTimer, &TimerCancelled);
817
818         DBGPRINT(RT_DEBUG_TRACE, ("ASSOC - Send DISASSOC request[BSSID::%02x:%02x:%02x:%02x:%02x:%02x (Reason=%d)\n",
819                                 pDisassocReq->Addr[0], pDisassocReq->Addr[1], pDisassocReq->Addr[2],
820                                 pDisassocReq->Addr[3], pDisassocReq->Addr[4], pDisassocReq->Addr[5], pDisassocReq->Reason));
821         MgtMacHeaderInit(pAd, &DisassocHdr, SUBTYPE_DISASSOC, 0, pDisassocReq->Addr, pDisassocReq->Addr);       // patch peap ttls switching issue
822         MakeOutgoingFrame(pOutBuffer,           &FrameLen,
823                                           sizeof(HEADER_802_11),&DisassocHdr,
824                                           2,                    &pDisassocReq->Reason,
825                                           END_OF_ARGS);
826         MiniportMMRequest(pAd, 0, pOutBuffer, FrameLen);
827
828         // To patch Instance and Buffalo(N) AP
829         // Driver has to send deauth to Instance AP, but Buffalo(N) needs to send disassoc to reset Authenticator's state machine
830         // Therefore, we send both of them.
831         pDisassocHdr = (PHEADER_802_11)pOutBuffer;
832         pDisassocHdr->FC.SubType = SUBTYPE_DEAUTH;
833         MiniportMMRequest(pAd, 0, pOutBuffer, FrameLen);
834
835         MlmeFreeMemory(pAd, pOutBuffer);
836
837         pAd->StaCfg.DisassocReason = REASON_DISASSOC_STA_LEAVING;
838         COPY_MAC_ADDR(pAd->StaCfg.DisassocSta, pDisassocReq->Addr);
839
840         RTMPSetTimer(&pAd->MlmeAux.DisassocTimer, Timeout); /* in mSec */
841         pAd->Mlme.AssocMachine.CurrState = DISASSOC_WAIT_RSP;
842
843 #ifdef WPA_SUPPLICANT_SUPPORT
844 #ifndef NATIVE_WPA_SUPPLICANT_SUPPORT
845     if (pAd->StaCfg.WpaSupplicantUP != WPA_SUPPLICANT_DISABLE)
846         {
847         union iwreq_data    wrqu;
848         //send disassociate event to wpa_supplicant
849         memset(&wrqu, 0, sizeof(wrqu));
850         wrqu.data.flags = RT_DISASSOC_EVENT_FLAG;
851         wireless_send_event(pAd->net_dev, IWEVCUSTOM, &wrqu, NULL);
852     }
853 #endif // NATIVE_WPA_SUPPLICANT_SUPPORT //
854 #endif // WPA_SUPPLICANT_SUPPORT //
855
856 #ifdef NATIVE_WPA_SUPPLICANT_SUPPORT
857     {
858         union iwreq_data    wrqu;
859         memset(wrqu.ap_addr.sa_data, 0, MAC_ADDR_LEN);
860         wireless_send_event(pAd->net_dev, SIOCGIWAP, &wrqu, NULL);
861     }
862 #endif // NATIVE_WPA_SUPPLICANT_SUPPORT //
863
864 }
865
866 /*
867         ==========================================================================
868         Description:
869                 peer sends assoc rsp back
870         Parameters:
871                 Elme - MLME message containing the received frame
872
873         IRQL = DISPATCH_LEVEL
874
875         ==========================================================================
876  */
877 VOID PeerAssocRspAction(
878         IN PRTMP_ADAPTER pAd,
879         IN MLME_QUEUE_ELEM *Elem)
880 {
881         USHORT        CapabilityInfo, Status, Aid;
882         UCHAR         SupRate[MAX_LEN_OF_SUPPORTED_RATES], SupRateLen;
883         UCHAR         ExtRate[MAX_LEN_OF_SUPPORTED_RATES], ExtRateLen;
884         UCHAR         Addr2[MAC_ADDR_LEN];
885         BOOLEAN       TimerCancelled;
886         UCHAR         CkipFlag;
887         EDCA_PARM     EdcaParm;
888         HT_CAPABILITY_IE                HtCapability;
889         ADD_HT_INFO_IE          AddHtInfo;      // AP might use this additional ht info IE
890         UCHAR                   HtCapabilityLen;
891         UCHAR                   AddHtInfoLen;
892         UCHAR                   NewExtChannelOffset = 0xff;
893
894         if (PeerAssocRspSanity(pAd, Elem->Msg, Elem->MsgLen, Addr2, &CapabilityInfo, &Status, &Aid, SupRate, &SupRateLen, ExtRate, &ExtRateLen,
895                 &HtCapability,&AddHtInfo, &HtCapabilityLen,&AddHtInfoLen,&NewExtChannelOffset, &EdcaParm, &CkipFlag))
896         {
897                 // The frame is for me ?
898                 if(MAC_ADDR_EQUAL(Addr2, pAd->MlmeAux.Bssid))
899                 {
900                         DBGPRINT(RT_DEBUG_TRACE, ("PeerAssocRspAction():ASSOC - receive ASSOC_RSP to me (status=%d)\n", Status));
901 #ifdef DOT11_N_SUPPORT
902                         DBGPRINT(RT_DEBUG_TRACE, ("PeerAssocRspAction():MacTable [%d].AMsduSize = %d. ClientStatusFlags = 0x%lx \n",Elem->Wcid, pAd->MacTab.Content[BSSID_WCID].AMsduSize, pAd->MacTab.Content[BSSID_WCID].ClientStatusFlags));
903 #endif // DOT11_N_SUPPORT //
904                         RTMPCancelTimer(&pAd->MlmeAux.AssocTimer, &TimerCancelled);
905                         if(Status == MLME_SUCCESS)
906                         {
907                                 UCHAR                   MaxSupportedRateIn500Kbps = 0;
908                                 UCHAR                   idx;
909
910                                 // supported rates array may not be sorted. sort it and find the maximum rate
911                             for (idx=0; idx<SupRateLen; idx++)
912                             {
913                                 if (MaxSupportedRateIn500Kbps < (SupRate[idx] & 0x7f))
914                                     MaxSupportedRateIn500Kbps = SupRate[idx] & 0x7f;
915                             }
916
917                                 for (idx=0; idx<ExtRateLen; idx++)
918                             {
919                                 if (MaxSupportedRateIn500Kbps < (ExtRate[idx] & 0x7f))
920                                     MaxSupportedRateIn500Kbps = ExtRate[idx] & 0x7f;
921                             }
922                                 // go to procedure listed on page 376
923                                 AssocPostProc(pAd, Addr2, CapabilityInfo, Aid, SupRate, SupRateLen, ExtRate, ExtRateLen,
924                                         &EdcaParm, &HtCapability, HtCapabilityLen, &AddHtInfo);
925
926                                 StaAddMacTableEntry(pAd, &pAd->MacTab.Content[BSSID_WCID], MaxSupportedRateIn500Kbps, &HtCapability, HtCapabilityLen, CapabilityInfo);
927
928                                 pAd->StaCfg.CkipFlag = CkipFlag;
929                                 if (CkipFlag & 0x18)
930                                 {
931                                         NdisZeroMemory(pAd->StaCfg.TxSEQ, 4);
932                                         NdisZeroMemory(pAd->StaCfg.RxSEQ, 4);
933                                         NdisZeroMemory(pAd->StaCfg.CKIPMIC, 4);
934                                         pAd->StaCfg.GIV[0] = RandomByte(pAd);
935                                         pAd->StaCfg.GIV[1] = RandomByte(pAd);
936                                         pAd->StaCfg.GIV[2] = RandomByte(pAd);
937                                         pAd->StaCfg.bCkipOn = TRUE;
938                                         DBGPRINT(RT_DEBUG_TRACE, ("<CCX> pAd->StaCfg.CkipFlag = 0x%02x\n", pAd->StaCfg.CkipFlag));
939                                 }
940                         }
941                         else
942                         {
943                         }
944                         pAd->Mlme.AssocMachine.CurrState = ASSOC_IDLE;
945                         MlmeEnqueue(pAd, MLME_CNTL_STATE_MACHINE, MT2_ASSOC_CONF, 2, &Status);
946                 }
947         }
948         else
949         {
950                 DBGPRINT(RT_DEBUG_TRACE, ("ASSOC - PeerAssocRspAction() sanity check fail\n"));
951         }
952 }
953
954 /*
955         ==========================================================================
956         Description:
957                 peer sends reassoc rsp
958         Parametrs:
959                 Elem - MLME message cntaining the received frame
960
961         IRQL = DISPATCH_LEVEL
962
963         ==========================================================================
964  */
965 VOID PeerReassocRspAction(
966         IN PRTMP_ADAPTER pAd,
967         IN MLME_QUEUE_ELEM *Elem)
968 {
969         USHORT      CapabilityInfo;
970         USHORT      Status;
971         USHORT      Aid;
972         UCHAR       SupRate[MAX_LEN_OF_SUPPORTED_RATES], SupRateLen;
973         UCHAR       ExtRate[MAX_LEN_OF_SUPPORTED_RATES], ExtRateLen;
974         UCHAR       Addr2[MAC_ADDR_LEN];
975         UCHAR       CkipFlag;
976         BOOLEAN     TimerCancelled;
977         EDCA_PARM   EdcaParm;
978         HT_CAPABILITY_IE                HtCapability;
979         ADD_HT_INFO_IE          AddHtInfo;      // AP might use this additional ht info IE
980         UCHAR                   HtCapabilityLen;
981         UCHAR                   AddHtInfoLen;
982         UCHAR                   NewExtChannelOffset = 0xff;
983
984         if(PeerAssocRspSanity(pAd, Elem->Msg, Elem->MsgLen, Addr2, &CapabilityInfo, &Status, &Aid, SupRate, &SupRateLen, ExtRate, &ExtRateLen,
985                                                                 &HtCapability,  &AddHtInfo, &HtCapabilityLen, &AddHtInfoLen,&NewExtChannelOffset, &EdcaParm, &CkipFlag))
986         {
987                 if(MAC_ADDR_EQUAL(Addr2, pAd->MlmeAux.Bssid)) // The frame is for me ?
988                 {
989                         DBGPRINT(RT_DEBUG_TRACE, ("ASSOC - receive REASSOC_RSP to me (status=%d)\n", Status));
990                         RTMPCancelTimer(&pAd->MlmeAux.ReassocTimer, &TimerCancelled);
991
992                         if(Status == MLME_SUCCESS)
993                         {
994                                 // go to procedure listed on page 376
995                                 AssocPostProc(pAd, Addr2, CapabilityInfo, Aid, SupRate, SupRateLen, ExtRate, ExtRateLen,
996                                          &EdcaParm, &HtCapability, HtCapabilityLen, &AddHtInfo);
997
998 #ifdef WPA_SUPPLICANT_SUPPORT
999 #ifndef NATIVE_WPA_SUPPLICANT_SUPPORT
1000                 if (pAd->StaCfg.WpaSupplicantUP != WPA_SUPPLICANT_DISABLE)
1001                 {
1002                     union iwreq_data    wrqu;
1003
1004                     SendAssocIEsToWpaSupplicant(pAd);
1005                     memset(&wrqu, 0, sizeof(wrqu));
1006                     wrqu.data.flags = RT_ASSOC_EVENT_FLAG;
1007                     wireless_send_event(pAd->net_dev, IWEVCUSTOM, &wrqu, NULL);
1008                 }
1009 #endif // NATIVE_WPA_SUPPLICANT_SUPPORT //
1010 #endif // WPA_SUPPLICANT_SUPPORT //
1011
1012 #ifdef NATIVE_WPA_SUPPLICANT_SUPPORT
1013                 {
1014                     union iwreq_data    wrqu;
1015                     wext_notify_event_assoc(pAd);
1016
1017                     memset(wrqu.ap_addr.sa_data, 0, MAC_ADDR_LEN);
1018                     memcpy(wrqu.ap_addr.sa_data, pAd->MlmeAux.Bssid, MAC_ADDR_LEN);
1019                     wireless_send_event(pAd->net_dev, SIOCGIWAP, &wrqu, NULL);
1020
1021                 }
1022 #endif // NATIVE_WPA_SUPPLICANT_SUPPORT //
1023
1024                         }
1025
1026                         {
1027                                 // CkipFlag is no use for reassociate
1028                                 pAd->Mlme.AssocMachine.CurrState = ASSOC_IDLE;
1029                                 MlmeEnqueue(pAd, MLME_CNTL_STATE_MACHINE, MT2_REASSOC_CONF, 2, &Status);
1030                         }
1031                 }
1032         }
1033         else
1034         {
1035                 DBGPRINT(RT_DEBUG_TRACE, ("ASSOC - PeerReassocRspAction() sanity check fail\n"));
1036         }
1037
1038 }
1039
1040 /*
1041         ==========================================================================
1042         Description:
1043                 procedures on IEEE 802.11/1999 p.376
1044         Parametrs:
1045
1046         IRQL = DISPATCH_LEVEL
1047
1048         ==========================================================================
1049  */
1050 VOID AssocPostProc(
1051         IN PRTMP_ADAPTER pAd,
1052         IN PUCHAR pAddr2,
1053         IN USHORT CapabilityInfo,
1054         IN USHORT Aid,
1055         IN UCHAR SupRate[],
1056         IN UCHAR SupRateLen,
1057         IN UCHAR ExtRate[],
1058         IN UCHAR ExtRateLen,
1059         IN PEDCA_PARM pEdcaParm,
1060         IN HT_CAPABILITY_IE             *pHtCapability,
1061         IN UCHAR HtCapabilityLen,
1062         IN ADD_HT_INFO_IE               *pAddHtInfo)    // AP might use this additional ht info IE
1063 {
1064         ULONG Idx;
1065
1066         pAd->MlmeAux.BssType = BSS_INFRA;
1067         COPY_MAC_ADDR(pAd->MlmeAux.Bssid, pAddr2);
1068         pAd->MlmeAux.Aid = Aid;
1069         pAd->MlmeAux.CapabilityInfo = CapabilityInfo & SUPPORTED_CAPABILITY_INFO;
1070 #ifdef DOT11_N_SUPPORT
1071         // Some HT AP might lost WMM IE. We add WMM ourselves. beacuase HT requires QoS on.
1072         if ((HtCapabilityLen > 0) && (pEdcaParm->bValid == FALSE))
1073         {
1074                 pEdcaParm->bValid = TRUE;
1075                 pEdcaParm->Aifsn[0] = 3;
1076                 pEdcaParm->Aifsn[1] = 7;
1077                 pEdcaParm->Aifsn[2] = 2;
1078                 pEdcaParm->Aifsn[3] = 2;
1079
1080                 pEdcaParm->Cwmin[0] = 4;
1081                 pEdcaParm->Cwmin[1] = 4;
1082                 pEdcaParm->Cwmin[2] = 3;
1083                 pEdcaParm->Cwmin[3] = 2;
1084
1085                 pEdcaParm->Cwmax[0] = 10;
1086                 pEdcaParm->Cwmax[1] = 10;
1087                 pEdcaParm->Cwmax[2] = 4;
1088                 pEdcaParm->Cwmax[3] = 3;
1089
1090                 pEdcaParm->Txop[0]  = 0;
1091                 pEdcaParm->Txop[1]  = 0;
1092                 pEdcaParm->Txop[2]  = 96;
1093                 pEdcaParm->Txop[3]  = 48;
1094
1095         }
1096 #endif // DOT11_N_SUPPORT //
1097
1098         NdisMoveMemory(&pAd->MlmeAux.APEdcaParm, pEdcaParm, sizeof(EDCA_PARM));
1099
1100         // filter out un-supported rates
1101         pAd->MlmeAux.SupRateLen = SupRateLen;
1102         NdisMoveMemory(pAd->MlmeAux.SupRate, SupRate, SupRateLen);
1103         RTMPCheckRates(pAd, pAd->MlmeAux.SupRate, &pAd->MlmeAux.SupRateLen);
1104
1105         // filter out un-supported rates
1106         pAd->MlmeAux.ExtRateLen = ExtRateLen;
1107         NdisMoveMemory(pAd->MlmeAux.ExtRate, ExtRate, ExtRateLen);
1108         RTMPCheckRates(pAd, pAd->MlmeAux.ExtRate, &pAd->MlmeAux.ExtRateLen);
1109
1110 #ifdef DOT11_N_SUPPORT
1111         if (HtCapabilityLen > 0)
1112         {
1113                 RTMPCheckHt(pAd, BSSID_WCID, pHtCapability, pAddHtInfo);
1114         }
1115         DBGPRINT(RT_DEBUG_TRACE, ("AssocPostProc===>  AP.AMsduSize = %d. ClientStatusFlags = 0x%lx \n", pAd->MacTab.Content[BSSID_WCID].AMsduSize, pAd->MacTab.Content[BSSID_WCID].ClientStatusFlags));
1116
1117         DBGPRINT(RT_DEBUG_TRACE, ("AssocPostProc===>    (Mmps=%d, AmsduSize=%d, )\n",
1118                 pAd->MacTab.Content[BSSID_WCID].MmpsMode, pAd->MacTab.Content[BSSID_WCID].AMsduSize));
1119 #endif // DOT11_N_SUPPORT //
1120
1121         // Set New WPA information
1122         Idx = BssTableSearch(&pAd->ScanTab, pAddr2, pAd->MlmeAux.Channel);
1123         if (Idx == BSS_NOT_FOUND)
1124         {
1125                 DBGPRINT_ERR(("ASSOC - Can't find BSS after receiving Assoc response\n"));
1126         }
1127         else
1128         {
1129                 // Init variable
1130                 pAd->MacTab.Content[BSSID_WCID].RSNIE_Len = 0;
1131                 NdisZeroMemory(pAd->MacTab.Content[BSSID_WCID].RSN_IE, MAX_LEN_OF_RSNIE);
1132
1133                 // Store appropriate RSN_IE for WPA SM negotiation later
1134                 if ((pAd->StaCfg.AuthMode >= Ndis802_11AuthModeWPA) && (pAd->ScanTab.BssEntry[Idx].VarIELen != 0))
1135                 {
1136                         PUCHAR              pVIE;
1137                         USHORT              len;
1138                         PEID_STRUCT         pEid;
1139
1140                         pVIE = pAd->ScanTab.BssEntry[Idx].VarIEs;
1141                         len      = pAd->ScanTab.BssEntry[Idx].VarIELen;
1142
1143                         while (len > 0)
1144                         {
1145                                 pEid = (PEID_STRUCT) pVIE;
1146                                 // For WPA/WPAPSK
1147                                 if ((pEid->Eid == IE_WPA) && (NdisEqualMemory(pEid->Octet, WPA_OUI, 4))
1148                                         && (pAd->StaCfg.AuthMode == Ndis802_11AuthModeWPA || pAd->StaCfg.AuthMode == Ndis802_11AuthModeWPAPSK))
1149                                 {
1150                                         NdisMoveMemory(pAd->MacTab.Content[BSSID_WCID].RSN_IE, pVIE, (pEid->Len + 2));
1151                                         pAd->MacTab.Content[BSSID_WCID].RSNIE_Len = (pEid->Len + 2);
1152                                         DBGPRINT(RT_DEBUG_TRACE, ("AssocPostProc===> Store RSN_IE for WPA SM negotiation \n"));
1153                                 }
1154                                 // For WPA2/WPA2PSK
1155                                 else if ((pEid->Eid == IE_RSN) && (NdisEqualMemory(pEid->Octet + 2, RSN_OUI, 3))
1156                                         && (pAd->StaCfg.AuthMode == Ndis802_11AuthModeWPA2 || pAd->StaCfg.AuthMode == Ndis802_11AuthModeWPA2PSK))
1157                                 {
1158                                         NdisMoveMemory(pAd->MacTab.Content[BSSID_WCID].RSN_IE, pVIE, (pEid->Len + 2));
1159                                         pAd->MacTab.Content[BSSID_WCID].RSNIE_Len = (pEid->Len + 2);
1160                                         DBGPRINT(RT_DEBUG_TRACE, ("AssocPostProc===> Store RSN_IE for WPA2 SM negotiation \n"));
1161                                 }
1162
1163                                 pVIE += (pEid->Len + 2);
1164                                 len  -= (pEid->Len + 2);
1165                         }
1166                 }
1167
1168                 if (pAd->MacTab.Content[BSSID_WCID].RSNIE_Len == 0)
1169                 {
1170                         DBGPRINT(RT_DEBUG_TRACE, ("AssocPostProc===> no RSN_IE \n"));
1171                 }
1172                 else
1173                 {
1174                         hex_dump("RSN_IE", pAd->MacTab.Content[BSSID_WCID].RSN_IE, pAd->MacTab.Content[BSSID_WCID].RSNIE_Len);
1175                 }
1176         }
1177 }
1178
1179 /*
1180         ==========================================================================
1181         Description:
1182                 left part of IEEE 802.11/1999 p.374
1183         Parameters:
1184                 Elem - MLME message containing the received frame
1185
1186         IRQL = DISPATCH_LEVEL
1187
1188         ==========================================================================
1189  */
1190 VOID PeerDisassocAction(
1191         IN PRTMP_ADAPTER pAd,
1192         IN MLME_QUEUE_ELEM *Elem)
1193 {
1194         UCHAR         Addr2[MAC_ADDR_LEN];
1195         USHORT        Reason;
1196
1197         DBGPRINT(RT_DEBUG_TRACE, ("ASSOC - PeerDisassocAction()\n"));
1198         if(PeerDisassocSanity(pAd, Elem->Msg, Elem->MsgLen, Addr2, &Reason))
1199         {
1200                 DBGPRINT(RT_DEBUG_TRACE, ("ASSOC - PeerDisassocAction() Reason = %d\n", Reason));
1201                 if (INFRA_ON(pAd) && MAC_ADDR_EQUAL(pAd->CommonCfg.Bssid, Addr2))
1202                 {
1203
1204                         if (pAd->CommonCfg.bWirelessEvent)
1205                         {
1206                                 RTMPSendWirelessEvent(pAd, IW_DISASSOC_EVENT_FLAG, pAd->MacTab.Content[BSSID_WCID].Addr, BSS0, 0);
1207                         }
1208
1209                         //
1210                         // Get Current System time and Turn on AdjacentAPReport
1211                         //
1212                         NdisGetSystemUpTime(&pAd->StaCfg.CCXAdjacentAPLinkDownTime);
1213                         pAd->StaCfg.CCXAdjacentAPReportFlag = TRUE;
1214                         LinkDown(pAd, TRUE);
1215                         pAd->Mlme.AssocMachine.CurrState = ASSOC_IDLE;
1216
1217 #ifdef WPA_SUPPLICANT_SUPPORT
1218 #ifndef NATIVE_WPA_SUPPLICANT_SUPPORT
1219             if (pAd->StaCfg.WpaSupplicantUP != WPA_SUPPLICANT_DISABLE)
1220                         {
1221                 union iwreq_data    wrqu;
1222                 //send disassociate event to wpa_supplicant
1223                 memset(&wrqu, 0, sizeof(wrqu));
1224                 wrqu.data.flags = RT_DISASSOC_EVENT_FLAG;
1225                 wireless_send_event(pAd->net_dev, IWEVCUSTOM, &wrqu, NULL);
1226             }
1227 #endif // NATIVE_WPA_SUPPLICANT_SUPPORT //
1228 #endif // WPA_SUPPLICANT_SUPPORT //
1229
1230 #ifdef NATIVE_WPA_SUPPLICANT_SUPPORT
1231             {
1232                 union iwreq_data    wrqu;
1233                 memset(wrqu.ap_addr.sa_data, 0, MAC_ADDR_LEN);
1234                 wireless_send_event(pAd->net_dev, SIOCGIWAP, &wrqu, NULL);
1235             }
1236 #endif // NATIVE_WPA_SUPPLICANT_SUPPORT //
1237                 }
1238         }
1239         else
1240         {
1241                 DBGPRINT(RT_DEBUG_TRACE, ("ASSOC - PeerDisassocAction() sanity check fail\n"));
1242         }
1243
1244 }
1245
1246 /*
1247         ==========================================================================
1248         Description:
1249                 what the state machine will do after assoc timeout
1250         Parameters:
1251                 Elme -
1252
1253         IRQL = DISPATCH_LEVEL
1254
1255         ==========================================================================
1256  */
1257 VOID AssocTimeoutAction(
1258         IN PRTMP_ADAPTER pAd,
1259         IN MLME_QUEUE_ELEM *Elem)
1260 {
1261         USHORT  Status;
1262         DBGPRINT(RT_DEBUG_TRACE, ("ASSOC - AssocTimeoutAction\n"));
1263         pAd->Mlme.AssocMachine.CurrState = ASSOC_IDLE;
1264         Status = MLME_REJ_TIMEOUT;
1265         MlmeEnqueue(pAd, MLME_CNTL_STATE_MACHINE, MT2_ASSOC_CONF, 2, &Status);
1266 }
1267
1268 /*
1269         ==========================================================================
1270         Description:
1271                 what the state machine will do after reassoc timeout
1272
1273         IRQL = DISPATCH_LEVEL
1274
1275         ==========================================================================
1276  */
1277 VOID ReassocTimeoutAction(
1278         IN PRTMP_ADAPTER pAd,
1279         IN MLME_QUEUE_ELEM *Elem)
1280 {
1281         USHORT  Status;
1282         DBGPRINT(RT_DEBUG_TRACE, ("ASSOC - ReassocTimeoutAction\n"));
1283         pAd->Mlme.AssocMachine.CurrState = ASSOC_IDLE;
1284         Status = MLME_REJ_TIMEOUT;
1285         MlmeEnqueue(pAd, MLME_CNTL_STATE_MACHINE, MT2_REASSOC_CONF, 2, &Status);
1286 }
1287
1288 /*
1289         ==========================================================================
1290         Description:
1291                 what the state machine will do after disassoc timeout
1292
1293         IRQL = DISPATCH_LEVEL
1294
1295         ==========================================================================
1296  */
1297 VOID DisassocTimeoutAction(
1298         IN PRTMP_ADAPTER pAd,
1299         IN MLME_QUEUE_ELEM *Elem)
1300 {
1301         USHORT  Status;
1302         DBGPRINT(RT_DEBUG_TRACE, ("ASSOC - DisassocTimeoutAction\n"));
1303         pAd->Mlme.AssocMachine.CurrState = ASSOC_IDLE;
1304         Status = MLME_SUCCESS;
1305         MlmeEnqueue(pAd, MLME_CNTL_STATE_MACHINE, MT2_DISASSOC_CONF, 2, &Status);
1306 }
1307
1308 VOID InvalidStateWhenAssoc(
1309         IN PRTMP_ADAPTER pAd,
1310         IN MLME_QUEUE_ELEM *Elem)
1311 {
1312         USHORT  Status;
1313         DBGPRINT(RT_DEBUG_TRACE, ("ASSOC - InvalidStateWhenAssoc(state=%ld), reset ASSOC state machine\n",
1314                 pAd->Mlme.AssocMachine.CurrState));
1315         pAd->Mlme.AssocMachine.CurrState = ASSOC_IDLE;
1316         Status = MLME_STATE_MACHINE_REJECT;
1317         MlmeEnqueue(pAd, MLME_CNTL_STATE_MACHINE, MT2_ASSOC_CONF, 2, &Status);
1318 }
1319
1320 VOID InvalidStateWhenReassoc(
1321         IN PRTMP_ADAPTER pAd,
1322         IN MLME_QUEUE_ELEM *Elem)
1323 {
1324         USHORT Status;
1325         DBGPRINT(RT_DEBUG_TRACE, ("ASSOC - InvalidStateWhenReassoc(state=%ld), reset ASSOC state machine\n",
1326                 pAd->Mlme.AssocMachine.CurrState));
1327         pAd->Mlme.AssocMachine.CurrState = ASSOC_IDLE;
1328         Status = MLME_STATE_MACHINE_REJECT;
1329         MlmeEnqueue(pAd, MLME_CNTL_STATE_MACHINE, MT2_REASSOC_CONF, 2, &Status);
1330 }
1331
1332 VOID InvalidStateWhenDisassociate(
1333         IN PRTMP_ADAPTER pAd,
1334         IN MLME_QUEUE_ELEM *Elem)
1335 {
1336         USHORT Status;
1337         DBGPRINT(RT_DEBUG_TRACE, ("ASSOC - InvalidStateWhenDisassoc(state=%ld), reset ASSOC state machine\n",
1338                 pAd->Mlme.AssocMachine.CurrState));
1339         pAd->Mlme.AssocMachine.CurrState = ASSOC_IDLE;
1340         Status = MLME_STATE_MACHINE_REJECT;
1341         MlmeEnqueue(pAd, MLME_CNTL_STATE_MACHINE, MT2_DISASSOC_CONF, 2, &Status);
1342 }
1343
1344 /*
1345         ==========================================================================
1346         Description:
1347                 right part of IEEE 802.11/1999 page 374
1348         Note:
1349                 This event should never cause ASSOC state machine perform state
1350                 transition, and has no relationship with CNTL machine. So we separate
1351                 this routine as a service outside of ASSOC state transition table.
1352
1353         IRQL = DISPATCH_LEVEL
1354
1355         ==========================================================================
1356  */
1357 VOID Cls3errAction(
1358         IN PRTMP_ADAPTER pAd,
1359         IN PUCHAR        pAddr)
1360 {
1361         HEADER_802_11         DisassocHdr;
1362         PHEADER_802_11        pDisassocHdr;
1363         PUCHAR                pOutBuffer = NULL;
1364         ULONG                 FrameLen = 0;
1365         NDIS_STATUS           NStatus;
1366         USHORT                Reason = REASON_CLS3ERR;
1367
1368         NStatus = MlmeAllocateMemory(pAd, &pOutBuffer);  //Get an unused nonpaged memory
1369         if (NStatus != NDIS_STATUS_SUCCESS)
1370                 return;
1371
1372         DBGPRINT(RT_DEBUG_TRACE, ("ASSOC - Class 3 Error, Send DISASSOC frame\n"));
1373         MgtMacHeaderInit(pAd, &DisassocHdr, SUBTYPE_DISASSOC, 0, pAddr, pAd->CommonCfg.Bssid);  // patch peap ttls switching issue
1374         MakeOutgoingFrame(pOutBuffer,           &FrameLen,
1375                                           sizeof(HEADER_802_11),&DisassocHdr,
1376                                           2,                    &Reason,
1377                                           END_OF_ARGS);
1378         MiniportMMRequest(pAd, 0, pOutBuffer, FrameLen);
1379
1380         // To patch Instance and Buffalo(N) AP
1381         // Driver has to send deauth to Instance AP, but Buffalo(N) needs to send disassoc to reset Authenticator's state machine
1382         // Therefore, we send both of them.
1383         pDisassocHdr = (PHEADER_802_11)pOutBuffer;
1384         pDisassocHdr->FC.SubType = SUBTYPE_DEAUTH;
1385         MiniportMMRequest(pAd, 0, pOutBuffer, FrameLen);
1386
1387         MlmeFreeMemory(pAd, pOutBuffer);
1388
1389         pAd->StaCfg.DisassocReason = REASON_CLS3ERR;
1390         COPY_MAC_ADDR(pAd->StaCfg.DisassocSta, pAddr);
1391 }
1392
1393  /*
1394          ==========================================================================
1395          Description:
1396                  Switch between WEP and CKIP upon new association up.
1397          Parameters:
1398
1399          IRQL = DISPATCH_LEVEL
1400
1401          ==========================================================================
1402   */
1403 VOID SwitchBetweenWepAndCkip(
1404         IN PRTMP_ADAPTER pAd)
1405 {
1406         int            i;
1407         SHAREDKEY_MODE_STRUC  csr1;
1408
1409         // if KP is required. change the CipherAlg in hardware shard key table from WEP
1410         // to CKIP. else remain as WEP
1411         if (pAd->StaCfg.bCkipOn && (pAd->StaCfg.CkipFlag & 0x10))
1412         {
1413                 // modify hardware key table so that MAC use correct algorithm to decrypt RX
1414                 RTMP_IO_READ32(pAd, SHARED_KEY_MODE_BASE, &csr1.word);
1415                 if (csr1.field.Bss0Key0CipherAlg == CIPHER_WEP64)
1416                         csr1.field.Bss0Key0CipherAlg = CIPHER_CKIP64;
1417                 else if (csr1.field.Bss0Key0CipherAlg == CIPHER_WEP128)
1418                         csr1.field.Bss0Key0CipherAlg = CIPHER_CKIP128;
1419
1420                 if (csr1.field.Bss0Key1CipherAlg == CIPHER_WEP64)
1421                         csr1.field.Bss0Key1CipherAlg = CIPHER_CKIP64;
1422                 else if (csr1.field.Bss0Key1CipherAlg == CIPHER_WEP128)
1423                         csr1.field.Bss0Key1CipherAlg = CIPHER_CKIP128;
1424
1425                 if (csr1.field.Bss0Key2CipherAlg == CIPHER_WEP64)
1426                         csr1.field.Bss0Key2CipherAlg = CIPHER_CKIP64;
1427                 else if (csr1.field.Bss0Key2CipherAlg == CIPHER_WEP128)
1428                         csr1.field.Bss0Key2CipherAlg = CIPHER_CKIP128;
1429
1430                 if (csr1.field.Bss0Key3CipherAlg == CIPHER_WEP64)
1431                         csr1.field.Bss0Key3CipherAlg = CIPHER_CKIP64;
1432                 else if (csr1.field.Bss0Key3CipherAlg == CIPHER_WEP128)
1433                         csr1.field.Bss0Key3CipherAlg = CIPHER_CKIP128;
1434                 RTMP_IO_WRITE32(pAd, SHARED_KEY_MODE_BASE, csr1.word);
1435                 DBGPRINT(RT_DEBUG_TRACE, ("SwitchBetweenWepAndCkip: modify BSS0 cipher to %s\n", CipherName[csr1.field.Bss0Key0CipherAlg]));
1436
1437                 // modify software key table so that driver can specify correct algorithm in TXD upon TX
1438                 for (i=0; i<SHARE_KEY_NUM; i++)
1439                 {
1440                         if (pAd->SharedKey[BSS0][i].CipherAlg == CIPHER_WEP64)
1441                                 pAd->SharedKey[BSS0][i].CipherAlg = CIPHER_CKIP64;
1442                         else if (pAd->SharedKey[BSS0][i].CipherAlg == CIPHER_WEP128)
1443                                 pAd->SharedKey[BSS0][i].CipherAlg = CIPHER_CKIP128;
1444                 }
1445         }
1446
1447         // else if KP NOT inused. change the CipherAlg in hardware shard key table from CKIP
1448         // to WEP.
1449         else
1450         {
1451                 // modify hardware key table so that MAC use correct algorithm to decrypt RX
1452                 RTMP_IO_READ32(pAd, SHARED_KEY_MODE_BASE, &csr1.word);
1453                 if (csr1.field.Bss0Key0CipherAlg == CIPHER_CKIP64)
1454                         csr1.field.Bss0Key0CipherAlg = CIPHER_WEP64;
1455                 else if (csr1.field.Bss0Key0CipherAlg == CIPHER_CKIP128)
1456                         csr1.field.Bss0Key0CipherAlg = CIPHER_WEP128;
1457
1458                 if (csr1.field.Bss0Key1CipherAlg == CIPHER_CKIP64)
1459                         csr1.field.Bss0Key1CipherAlg = CIPHER_WEP64;
1460                 else if (csr1.field.Bss0Key1CipherAlg == CIPHER_CKIP128)
1461                         csr1.field.Bss0Key1CipherAlg = CIPHER_WEP128;
1462
1463                 if (csr1.field.Bss0Key2CipherAlg == CIPHER_CKIP64)
1464                         csr1.field.Bss0Key2CipherAlg = CIPHER_WEP64;
1465                 else if (csr1.field.Bss0Key2CipherAlg == CIPHER_CKIP128)
1466                         csr1.field.Bss0Key2CipherAlg = CIPHER_WEP128;
1467
1468                 if (csr1.field.Bss0Key3CipherAlg == CIPHER_CKIP64)
1469                         csr1.field.Bss0Key3CipherAlg = CIPHER_WEP64;
1470                 else if (csr1.field.Bss0Key3CipherAlg == CIPHER_CKIP128)
1471                         csr1.field.Bss0Key3CipherAlg = CIPHER_WEP128;
1472
1473                 // modify software key table so that driver can specify correct algorithm in TXD upon TX
1474                 for (i=0; i<SHARE_KEY_NUM; i++)
1475                 {
1476                         if (pAd->SharedKey[BSS0][i].CipherAlg == CIPHER_CKIP64)
1477                                 pAd->SharedKey[BSS0][i].CipherAlg = CIPHER_WEP64;
1478                         else if (pAd->SharedKey[BSS0][i].CipherAlg == CIPHER_CKIP128)
1479                                 pAd->SharedKey[BSS0][i].CipherAlg = CIPHER_WEP128;
1480                 }
1481
1482                 //
1483                 // On WPA-NONE, must update CipherAlg.
1484                 // Because the OID_802_11_WEP_STATUS was been set after OID_802_11_ADD_KEY
1485                 // and CipherAlg will be CIPHER_NONE by Windows ZeroConfig.
1486                 // So we need to update CipherAlg after connect.
1487                 //
1488                 if (pAd->StaCfg.AuthMode == Ndis802_11AuthModeWPANone)
1489                 {
1490                         for (i = 0; i < SHARE_KEY_NUM; i++)
1491                         {
1492                                 if (pAd->SharedKey[BSS0][i].KeyLen != 0)
1493                                 {
1494                                         if (pAd->StaCfg.WepStatus == Ndis802_11Encryption2Enabled)
1495                                         {
1496                                                 pAd->SharedKey[BSS0][i].CipherAlg = CIPHER_TKIP;
1497                                         }
1498                                         else if (pAd->StaCfg.WepStatus == Ndis802_11Encryption3Enabled)
1499                                         {
1500                                                 pAd->SharedKey[BSS0][i].CipherAlg = CIPHER_AES;
1501                                         }
1502                                 }
1503                                 else
1504                                 {
1505                                         pAd->SharedKey[BSS0][i].CipherAlg = CIPHER_NONE;
1506                                 }
1507                         }
1508
1509                         csr1.field.Bss0Key0CipherAlg = pAd->SharedKey[BSS0][0].CipherAlg;
1510                         csr1.field.Bss0Key1CipherAlg = pAd->SharedKey[BSS0][1].CipherAlg;
1511                         csr1.field.Bss0Key2CipherAlg = pAd->SharedKey[BSS0][2].CipherAlg;
1512                         csr1.field.Bss0Key3CipherAlg = pAd->SharedKey[BSS0][3].CipherAlg;
1513                 }
1514                 RTMP_IO_WRITE32(pAd, SHARED_KEY_MODE_BASE, csr1.word);
1515                 DBGPRINT(RT_DEBUG_TRACE, ("SwitchBetweenWepAndCkip: modify BSS0 cipher to %s\n", CipherName[csr1.field.Bss0Key0CipherAlg]));
1516         }
1517 }
1518
1519 #ifdef WPA_SUPPLICANT_SUPPORT
1520 #ifndef NATIVE_WPA_SUPPLICANT_SUPPORT
1521 VOID    SendAssocIEsToWpaSupplicant(
1522     IN  PRTMP_ADAPTER pAd)
1523 {
1524     union iwreq_data    wrqu;
1525     unsigned char custom[IW_CUSTOM_MAX] = {0};
1526
1527     if ((pAd->StaCfg.ReqVarIELen + 17) <= IW_CUSTOM_MAX)
1528     {
1529         sprintf(custom, "ASSOCINFO_ReqIEs=");
1530             NdisMoveMemory(custom+17, pAd->StaCfg.ReqVarIEs, pAd->StaCfg.ReqVarIELen);
1531             memset(&wrqu, 0, sizeof(wrqu));
1532         wrqu.data.length = pAd->StaCfg.ReqVarIELen + 17;
1533         wrqu.data.flags = RT_REQIE_EVENT_FLAG;
1534         wireless_send_event(pAd->net_dev, IWEVCUSTOM, &wrqu, custom);
1535
1536         memset(&wrqu, 0, sizeof(wrqu));
1537         wrqu.data.flags = RT_ASSOCINFO_EVENT_FLAG;
1538         wireless_send_event(pAd->net_dev, IWEVCUSTOM, &wrqu, NULL);
1539     }
1540     else
1541         DBGPRINT(RT_DEBUG_TRACE, ("pAd->StaCfg.ReqVarIELen + 17 > MAX_CUSTOM_LEN\n"));
1542
1543     return;
1544 }
1545 #endif // NATIVE_WPA_SUPPLICANT_SUPPORT //
1546 #endif // WPA_SUPPLICANT_SUPPORT //
1547
1548 #ifdef NATIVE_WPA_SUPPLICANT_SUPPORT
1549 int wext_notify_event_assoc(
1550         IN  RTMP_ADAPTER *pAd)
1551 {
1552     union iwreq_data    wrqu;
1553     char custom[IW_CUSTOM_MAX] = {0};
1554
1555 #if WIRELESS_EXT > 17
1556     if (pAd->StaCfg.ReqVarIELen <= IW_CUSTOM_MAX)
1557     {
1558         wrqu.data.length = pAd->StaCfg.ReqVarIELen;
1559         memcpy(custom, pAd->StaCfg.ReqVarIEs, pAd->StaCfg.ReqVarIELen);
1560         wireless_send_event(pAd->net_dev, IWEVASSOCREQIE, &wrqu, custom);
1561     }
1562     else
1563         DBGPRINT(RT_DEBUG_TRACE, ("pAd->StaCfg.ReqVarIELen > MAX_CUSTOM_LEN\n"));
1564 #else
1565     if (((pAd->StaCfg.ReqVarIELen*2) + 17) <= IW_CUSTOM_MAX)
1566     {
1567         UCHAR   idx;
1568         wrqu.data.length = (pAd->StaCfg.ReqVarIELen*2) + 17;
1569         sprintf(custom, "ASSOCINFO(ReqIEs=");
1570         for (idx=0; idx<pAd->StaCfg.ReqVarIELen; idx++)
1571                 sprintf(custom + strlen(custom), "%02x", pAd->StaCfg.ReqVarIEs[idx]);
1572         wireless_send_event(pAd->net_dev, IWEVCUSTOM, &wrqu, custom);
1573     }
1574     else
1575         DBGPRINT(RT_DEBUG_TRACE, ("(pAd->StaCfg.ReqVarIELen*2) + 17 > MAX_CUSTOM_LEN\n"));
1576 #endif
1577
1578         return 0;
1579
1580 }
1581 #endif // NATIVE_WPA_SUPPLICANT_SUPPORT //
1582
1583
1584 BOOLEAN StaAddMacTableEntry(
1585         IN  PRTMP_ADAPTER               pAd,
1586         IN  PMAC_TABLE_ENTRY    pEntry,
1587         IN  UCHAR                               MaxSupportedRateIn500Kbps,
1588         IN  HT_CAPABILITY_IE    *pHtCapability,
1589         IN  UCHAR                               HtCapabilityLen,
1590         IN  USHORT                      CapabilityInfo)
1591 {
1592         UCHAR            MaxSupportedRate = RATE_11;
1593
1594         if (ADHOC_ON(pAd))
1595                 CLIENT_STATUS_CLEAR_FLAG(pEntry, fCLIENT_STATUS_WMM_CAPABLE);
1596
1597         switch (MaxSupportedRateIn500Kbps)
1598     {
1599         case 108: MaxSupportedRate = RATE_54;   break;
1600         case 96:  MaxSupportedRate = RATE_48;   break;
1601         case 72:  MaxSupportedRate = RATE_36;   break;
1602         case 48:  MaxSupportedRate = RATE_24;   break;
1603         case 36:  MaxSupportedRate = RATE_18;   break;
1604         case 24:  MaxSupportedRate = RATE_12;   break;
1605         case 18:  MaxSupportedRate = RATE_9;    break;
1606         case 12:  MaxSupportedRate = RATE_6;    break;
1607         case 22:  MaxSupportedRate = RATE_11;   break;
1608         case 11:  MaxSupportedRate = RATE_5_5;  break;
1609         case 4:   MaxSupportedRate = RATE_2;    break;
1610         case 2:   MaxSupportedRate = RATE_1;    break;
1611         default:  MaxSupportedRate = RATE_11;   break;
1612     }
1613
1614     if ((pAd->CommonCfg.PhyMode == PHY_11G) && (MaxSupportedRate < RATE_FIRST_OFDM_RATE))
1615         return FALSE;
1616
1617 #ifdef DOT11_N_SUPPORT
1618         // 11n only
1619         if (((pAd->CommonCfg.PhyMode == PHY_11N_2_4G) || (pAd->CommonCfg.PhyMode == PHY_11N_5G))&& (HtCapabilityLen == 0))
1620                 return FALSE;
1621 #endif // DOT11_N_SUPPORT //
1622
1623         if (!pEntry)
1624         return FALSE;
1625
1626         NdisAcquireSpinLock(&pAd->MacTabLock);
1627         if (pEntry)
1628         {
1629                 pEntry->PortSecured = WPA_802_1X_PORT_SECURED;
1630                 if ((MaxSupportedRate < RATE_FIRST_OFDM_RATE) ||
1631                         (pAd->CommonCfg.PhyMode == PHY_11B))
1632                 {
1633                         pEntry->RateLen = 4;
1634                         if (MaxSupportedRate >= RATE_FIRST_OFDM_RATE)
1635                                 MaxSupportedRate = RATE_11;
1636                 }
1637                 else
1638                         pEntry->RateLen = 12;
1639
1640                 pEntry->MaxHTPhyMode.word = 0;
1641                 pEntry->MinHTPhyMode.word = 0;
1642                 pEntry->HTPhyMode.word = 0;
1643                 pEntry->MaxSupportedRate = MaxSupportedRate;
1644                 if (pEntry->MaxSupportedRate < RATE_FIRST_OFDM_RATE)
1645                 {
1646                         pEntry->MaxHTPhyMode.field.MODE = MODE_CCK;
1647                         pEntry->MaxHTPhyMode.field.MCS = pEntry->MaxSupportedRate;
1648                         pEntry->MinHTPhyMode.field.MODE = MODE_CCK;
1649                         pEntry->MinHTPhyMode.field.MCS = pEntry->MaxSupportedRate;
1650                         pEntry->HTPhyMode.field.MODE = MODE_CCK;
1651                         pEntry->HTPhyMode.field.MCS = pEntry->MaxSupportedRate;
1652                 }
1653                 else
1654                 {
1655                         pEntry->MaxHTPhyMode.field.MODE = MODE_OFDM;
1656                         pEntry->MaxHTPhyMode.field.MCS = OfdmRateToRxwiMCS[pEntry->MaxSupportedRate];
1657                         pEntry->MinHTPhyMode.field.MODE = MODE_OFDM;
1658                         pEntry->MinHTPhyMode.field.MCS = OfdmRateToRxwiMCS[pEntry->MaxSupportedRate];
1659                         pEntry->HTPhyMode.field.MODE = MODE_OFDM;
1660                         pEntry->HTPhyMode.field.MCS = OfdmRateToRxwiMCS[pEntry->MaxSupportedRate];
1661                 }
1662                 pEntry->CapabilityInfo = CapabilityInfo;
1663                 CLIENT_STATUS_CLEAR_FLAG(pEntry, fCLIENT_STATUS_AGGREGATION_CAPABLE);
1664                 CLIENT_STATUS_CLEAR_FLAG(pEntry, fCLIENT_STATUS_PIGGYBACK_CAPABLE);
1665         }
1666
1667 #ifdef DOT11_N_SUPPORT
1668         // If this Entry supports 802.11n, upgrade to HT rate.
1669         if ((HtCapabilityLen != 0) && (pAd->CommonCfg.PhyMode >= PHY_11ABGN_MIXED))
1670         {
1671                 UCHAR   j, bitmask; //k,bitmask;
1672                 CHAR    i;
1673
1674                 if (ADHOC_ON(pAd))
1675                         CLIENT_STATUS_SET_FLAG(pEntry, fCLIENT_STATUS_WMM_CAPABLE);
1676                 if ((pHtCapability->HtCapInfo.GF) && (pAd->CommonCfg.DesiredHtPhy.GF))
1677                 {
1678                         pEntry->MaxHTPhyMode.field.MODE = MODE_HTGREENFIELD;
1679                 }
1680                 else
1681                 {
1682                         pEntry->MaxHTPhyMode.field.MODE = MODE_HTMIX;
1683                         pAd->MacTab.fAnyStationNonGF = TRUE;
1684                         pAd->CommonCfg.AddHTInfo.AddHtInfo2.NonGfPresent = 1;
1685                 }
1686
1687                 if ((pHtCapability->HtCapInfo.ChannelWidth) && (pAd->CommonCfg.DesiredHtPhy.ChannelWidth))
1688                 {
1689                         pEntry->MaxHTPhyMode.field.BW= BW_40;
1690                         pEntry->MaxHTPhyMode.field.ShortGI = ((pAd->CommonCfg.DesiredHtPhy.ShortGIfor40)&(pHtCapability->HtCapInfo.ShortGIfor40));
1691                 }
1692                 else
1693                 {
1694                         pEntry->MaxHTPhyMode.field.BW = BW_20;
1695                         pEntry->MaxHTPhyMode.field.ShortGI = ((pAd->CommonCfg.DesiredHtPhy.ShortGIfor20)&(pHtCapability->HtCapInfo.ShortGIfor20));
1696                         pAd->MacTab.fAnyStation20Only = TRUE;
1697                 }
1698
1699                 // 3*3
1700                 if (pAd->MACVersion >= RALINK_2883_VERSION && pAd->MACVersion < RALINK_3070_VERSION)
1701                         pEntry->MaxHTPhyMode.field.TxBF = pAd->CommonCfg.RegTransmitSetting.field.TxBF;
1702
1703                 // find max fixed rate
1704                 for (i=23; i>=0; i--) // 3*3
1705                 {
1706                         j = i/8;
1707                         bitmask = (1<<(i-(j*8)));
1708                         if ((pAd->StaCfg.DesiredHtPhyInfo.MCSSet[j] & bitmask) && (pHtCapability->MCSSet[j] & bitmask))
1709                         {
1710                                 pEntry->MaxHTPhyMode.field.MCS = i;
1711                                 break;
1712                         }
1713                         if (i==0)
1714                                 break;
1715                 }
1716
1717
1718                 if (pAd->StaCfg.DesiredTransmitSetting.field.MCS != MCS_AUTO)
1719                 {
1720                         if (pAd->StaCfg.DesiredTransmitSetting.field.MCS == 32)
1721                         {
1722                                 // Fix MCS as HT Duplicated Mode
1723                                 pEntry->MaxHTPhyMode.field.BW = 1;
1724                                 pEntry->MaxHTPhyMode.field.MODE = MODE_HTMIX;
1725                                 pEntry->MaxHTPhyMode.field.STBC = 0;
1726                                 pEntry->MaxHTPhyMode.field.ShortGI = 0;
1727                                 pEntry->MaxHTPhyMode.field.MCS = 32;
1728                         }
1729                         else if (pEntry->MaxHTPhyMode.field.MCS > pAd->StaCfg.HTPhyMode.field.MCS)
1730                         {
1731                                 // STA supports fixed MCS
1732                                 pEntry->MaxHTPhyMode.field.MCS = pAd->StaCfg.HTPhyMode.field.MCS;
1733                         }
1734                 }
1735
1736                 pEntry->MaxHTPhyMode.field.STBC = (pHtCapability->HtCapInfo.RxSTBC & (pAd->CommonCfg.DesiredHtPhy.TxSTBC));
1737                 pEntry->MpduDensity = pHtCapability->HtCapParm.MpduDensity;
1738                 pEntry->MaxRAmpduFactor = pHtCapability->HtCapParm.MaxRAmpduFactor;
1739                 pEntry->MmpsMode = (UCHAR)pHtCapability->HtCapInfo.MimoPs;
1740                 pEntry->AMsduSize = (UCHAR)pHtCapability->HtCapInfo.AMsduSize;
1741                 pEntry->HTPhyMode.word = pEntry->MaxHTPhyMode.word;
1742
1743                 if (pAd->CommonCfg.DesiredHtPhy.AmsduEnable && (pAd->CommonCfg.REGBACapability.field.AutoBA == FALSE))
1744                         CLIENT_STATUS_SET_FLAG(pEntry, fCLIENT_STATUS_AMSDU_INUSED);
1745                 if (pHtCapability->HtCapInfo.ShortGIfor20)
1746                         CLIENT_STATUS_SET_FLAG(pEntry, fCLIENT_STATUS_SGI20_CAPABLE);
1747                 if (pHtCapability->HtCapInfo.ShortGIfor40)
1748                         CLIENT_STATUS_SET_FLAG(pEntry, fCLIENT_STATUS_SGI40_CAPABLE);
1749                 if (pHtCapability->HtCapInfo.TxSTBC)
1750                         CLIENT_STATUS_SET_FLAG(pEntry, fCLIENT_STATUS_TxSTBC_CAPABLE);
1751                 if (pHtCapability->HtCapInfo.RxSTBC)
1752                         CLIENT_STATUS_SET_FLAG(pEntry, fCLIENT_STATUS_RxSTBC_CAPABLE);
1753                 if (pHtCapability->ExtHtCapInfo.PlusHTC)
1754                         CLIENT_STATUS_SET_FLAG(pEntry, fCLIENT_STATUS_HTC_CAPABLE);
1755                 if (pAd->CommonCfg.bRdg && pHtCapability->ExtHtCapInfo.RDGSupport)
1756                         CLIENT_STATUS_SET_FLAG(pEntry, fCLIENT_STATUS_RDG_CAPABLE);
1757                 if (pHtCapability->ExtHtCapInfo.MCSFeedback == 0x03)
1758                         CLIENT_STATUS_SET_FLAG(pEntry, fCLIENT_STATUS_MCSFEEDBACK_CAPABLE);
1759         }
1760         else
1761         {
1762                 pAd->MacTab.fAnyStationIsLegacy = TRUE;
1763         }
1764
1765         NdisMoveMemory(&pEntry->HTCapability, pHtCapability, sizeof(HT_CAPABILITY_IE));
1766 #endif // DOT11_N_SUPPORT //
1767
1768         pEntry->HTPhyMode.word = pEntry->MaxHTPhyMode.word;
1769         pEntry->CurrTxRate = pEntry->MaxSupportedRate;
1770
1771         // Set asic auto fall back
1772         if (pAd->StaCfg.bAutoTxRateSwitch == TRUE)
1773         {
1774                 PUCHAR                                  pTable;
1775                 UCHAR                                   TableSize = 0;
1776
1777                 MlmeSelectTxRateTable(pAd, pEntry, &pTable, &TableSize, &pEntry->CurrTxRateIndex);
1778                 pEntry->bAutoTxRateSwitch = TRUE;
1779         }
1780         else
1781         {
1782                 pEntry->HTPhyMode.field.MODE    = pAd->StaCfg.HTPhyMode.field.MODE;
1783                 pEntry->HTPhyMode.field.MCS     = pAd->StaCfg.HTPhyMode.field.MCS;
1784                 pEntry->bAutoTxRateSwitch = FALSE;
1785
1786                 // If the legacy mode is set, overwrite the transmit setting of this entry.
1787                 RTMPUpdateLegacyTxSetting((UCHAR)pAd->StaCfg.DesiredTransmitSetting.field.FixedTxMode, pEntry);
1788         }
1789
1790         pEntry->PortSecured = WPA_802_1X_PORT_SECURED;
1791         pEntry->Sst = SST_ASSOC;
1792         pEntry->AuthState = AS_AUTH_OPEN;
1793         pEntry->AuthMode = pAd->StaCfg.AuthMode;
1794         pEntry->WepStatus = pAd->StaCfg.WepStatus;
1795
1796         NdisReleaseSpinLock(&pAd->MacTabLock);
1797
1798 #ifdef WPA_SUPPLICANT_SUPPORT
1799 #ifndef NATIVE_WPA_SUPPLICANT_SUPPORT
1800     if (pAd->StaCfg.WpaSupplicantUP)
1801     {
1802         union iwreq_data    wrqu;
1803
1804         SendAssocIEsToWpaSupplicant(pAd);
1805         memset(&wrqu, 0, sizeof(wrqu));
1806         wrqu.data.flags = RT_ASSOC_EVENT_FLAG;
1807         wireless_send_event(pAd->net_dev, IWEVCUSTOM, &wrqu, NULL);
1808     }
1809 #endif // NATIVE_WPA_SUPPLICANT_SUPPORT //
1810 #endif // WPA_SUPPLICANT_SUPPORT //
1811
1812 #ifdef NATIVE_WPA_SUPPLICANT_SUPPORT
1813     {
1814         union iwreq_data    wrqu;
1815         wext_notify_event_assoc(pAd);
1816
1817         memset(wrqu.ap_addr.sa_data, 0, MAC_ADDR_LEN);
1818         memcpy(wrqu.ap_addr.sa_data, pAd->MlmeAux.Bssid, MAC_ADDR_LEN);
1819         wireless_send_event(pAd->net_dev, SIOCGIWAP, &wrqu, NULL);
1820
1821     }
1822 #endif // NATIVE_WPA_SUPPLICANT_SUPPORT //
1823         return TRUE;
1824 }
1825
1826