Patch Detail
get:
Show a patch.
patch:
Update a patch.
put:
Update a patch.
GET /api/1.2/patches/2226397/?format=api
{ "id": 2226397, "url": "http://patchwork.ozlabs.org/api/1.2/patches/2226397/?format=api", "web_url": "http://patchwork.ozlabs.org/project/hostap/patch/20260422122424.43776-51-andrei.otcheretianski@intel.com/", "project": { "id": 22, "url": "http://patchwork.ozlabs.org/api/1.2/projects/22/?format=api", "name": "HostAP Development", "link_name": "hostap", "list_id": "hostap.lists.infradead.org", "list_email": "hostap@lists.infradead.org", "web_url": "", "scm_url": "", "webscm_url": "", "list_archive_url": "", "list_archive_url_format": "", "commit_url_format": "" }, "msgid": "<20260422122424.43776-51-andrei.otcheretianski@intel.com>", "list_archive_url": null, "date": "2026-04-22T12:23:41", "name": "[50/92] NAN: Add Security Context Information attribute to publish messages", "commit_ref": null, "pull_url": null, "state": "new", "archived": false, "hash": "6772d2d0f541e8f8dec1f435f63477f51fb8dcec", "submitter": { "id": 62065, "url": "http://patchwork.ozlabs.org/api/1.2/people/62065/?format=api", "name": "Andrei Otcheretianski", "email": "andrei.otcheretianski@intel.com" }, "delegate": null, "mbox": "http://patchwork.ozlabs.org/project/hostap/patch/20260422122424.43776-51-andrei.otcheretianski@intel.com/mbox/", "series": [ { "id": 501001, "url": "http://patchwork.ozlabs.org/api/1.2/series/501001/?format=api", "web_url": "http://patchwork.ozlabs.org/project/hostap/list/?series=501001", "date": "2026-04-22T12:23:05", "name": "Add NAN PASN pairing support", "version": 1, "mbox": "http://patchwork.ozlabs.org/series/501001/mbox/" } ], "comments": "http://patchwork.ozlabs.org/api/patches/2226397/comments/", "check": "pending", "checks": "http://patchwork.ozlabs.org/api/patches/2226397/checks/", "tags": {}, "related": [], "headers": { "Return-Path": "\n <hostap-bounces+incoming=patchwork.ozlabs.org@lists.infradead.org>", "X-Original-To": "incoming@patchwork.ozlabs.org", "Delivered-To": "patchwork-incoming@legolas.ozlabs.org", "Authentication-Results": [ "legolas.ozlabs.org;\n\tdkim=pass (2048-bit key;\n secure) header.d=lists.infradead.org header.i=@lists.infradead.org\n header.a=rsa-sha256 header.s=bombadil.20210309 header.b=Lwfd3d0D;\n\tdkim=fail reason=\"signature verification failed\" (2048-bit key;\n unprotected) header.d=intel.com header.i=@intel.com header.a=rsa-sha256\n header.s=Intel header.b=Zxvsdu9T;\n\tdkim-atps=neutral", "legolas.ozlabs.org;\n spf=none (no SPF record) smtp.mailfrom=lists.infradead.org\n (client-ip=2607:7c80:54:3::133; helo=bombadil.infradead.org;\n envelope-from=hostap-bounces+incoming=patchwork.ozlabs.org@lists.infradead.org;\n receiver=patchwork.ozlabs.org)" ], "Received": [ "from bombadil.infradead.org (bombadil.infradead.org\n [IPv6:2607:7c80:54:3::133])\n\t(using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits)\n\t key-exchange x25519 server-signature ECDSA (secp384r1) server-digest SHA384)\n\t(No client certificate requested)\n\tby legolas.ozlabs.org (Postfix) with ESMTPS id 4g0z6W0GSfz1yCv\n\tfor <incoming@patchwork.ozlabs.org>; Wed, 22 Apr 2026 22:28:51 +1000 (AEST)", "from localhost ([::1] helo=bombadil.infradead.org)\n\tby bombadil.infradead.org with esmtp (Exim 4.98.2 #2 (Red Hat Linux))\n\tid 1wFWgm-0000000A7Hj-3F8Y;\n\tWed, 22 Apr 2026 12:28:20 +0000", "from mgamail.intel.com ([192.198.163.17])\n\tby bombadil.infradead.org with esmtps (Exim 4.98.2 #2 (Red Hat Linux))\n\tid 1wFWf6-0000000A34C-2c45\n\tfor hostap@lists.infradead.org;\n\tWed, 22 Apr 2026 12:26:46 +0000", "from orviesa010.jf.intel.com ([10.64.159.150])\n by fmvoesa111.fm.intel.com with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384;\n 22 Apr 2026 05:25:56 -0700", "from iapp347.iil.intel.com (HELO 87c02287900a.iil.intel.com)\n ([10.167.28.6])\n by orviesa010-auth.jf.intel.com with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384;\n 22 Apr 2026 05:25:55 -0700" ], "DKIM-Signature": [ "v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed;\n\td=lists.infradead.org; s=bombadil.20210309; h=Sender:\n\tContent-Transfer-Encoding:Content-Type:List-Subscribe:List-Help:List-Post:\n\tList-Archive:List-Unsubscribe:List-Id:MIME-Version:References:In-Reply-To:\n\tMessage-ID:Date:Subject:Cc:To:From:Reply-To:Content-ID:Content-Description:\n\tResent-Date:Resent-From:Resent-Sender:Resent-To:Resent-Cc:Resent-Message-ID:\n\tList-Owner; bh=q3mYw6IV2yBtSLz3oiLiYIu8WYhVBnV1p4kcKSsueF0=; b=Lwfd3d0D5kg/UK\n\t/iCO/ZY2w9oQGub6En8Mr55l6SMqdm+UwMASmdhxSVaP7HNNTerfIDxHIHv5e+zMBV3uM2FyexMId\n\tu8tukt9i1KAxjN+Ij+rDXPID6ml/7tRHNQBhslUk7vojHf84aO1X2PozIE/MPUJygsP/DtJsGmVCC\n\trp6lK3fjnS9FRaGpRZ4KXZMa4Na20DnnhJRI/rc7GiJgyeHatBL1xLFxE9BnxFXOMrgrofmpz12sA\n\tFPYENF28jXoykTNvksc1vriuau4J7txpP7hB6gxnl2CL7BcMvQeiM//ErqxMDYq8f7z2J5+b8qk93\n\tzchtLL8tW7ZKoIX+mB7Q==;", "v=1; a=rsa-sha256; c=relaxed/simple;\n d=intel.com; i=@intel.com; q=dns/txt; s=Intel;\n t=1776860796; x=1808396796;\n h=from:to:cc:subject:date:message-id:in-reply-to:\n references:mime-version:content-transfer-encoding;\n bh=WRckrPqcYIbYVjh1VgXD1kja+uqEiirgpxieJ10+RVE=;\n b=Zxvsdu9THTE8FdzdFH7D2XsBziyTvu2dIOr5KC55k3d1+nQ6lWL45jwX\n utFLXd/2hNuxldB16Ix8hpIiy5ovWLK1oy7kYMhr9ofrkEyShToVz8iHy\n laN7VjoJcklpmnRtmhjTr/w2zz+CaNmmK0UON8vd3IkuF/F5GgUIQBktW\n ZaEiaN8dXwM3UrPHAe7H7Dbv7fCc+myKSQs/Rh57b9CHXWiGBoG51qtA6\n CqUCQrK8eZpp1ZWBRKCZ+sirTjelm4wwsc9A3+QSiS7jtWi8m8qo7B0z2\n Gx7VLfXykIgDm1I1byY/NpLCDqgXYf5cJk6IGqpxIYgR5fTjsPF5XTm/E\n A==;" ], "X-CSE-ConnectionGUID": [ "+LFQz1vSQLGUk7NGMm3SeQ==", "1ymvdy8mTNiTUKYZP4+fmw==" ], "X-CSE-MsgGUID": [ "J0iwgfqDRcayxzAsexZIJQ==", "rO9Vxs4zTqCDUr5EXgMMWQ==" ], "X-IronPort-AV": [ "E=McAfee;i=\"6800,10657,11764\"; a=\"77687398\"", "E=Sophos;i=\"6.23,192,1770624000\";\n d=\"scan'208\";a=\"77687398\"", "E=Sophos;i=\"6.23,192,1770624000\";\n d=\"scan'208\";a=\"231445099\"" ], "X-ExtLoop1": "1", "From": "Andrei Otcheretianski <andrei.otcheretianski@intel.com>", "To": "hostap@lists.infradead.org", "Cc": "vamsin@qti.qualcomm.com,\n\tmaheshkkv@google.com,\n\tAvraham Stern <avraham.stern@intel.com>", "Subject": "[PATCH 50/92] NAN: Add Security Context Information attribute to\n publish messages", "Date": "Wed, 22 Apr 2026 15:23:41 +0300", "Message-ID": "<20260422122424.43776-51-andrei.otcheretianski@intel.com>", "X-Mailer": "git-send-email 2.53.0", "In-Reply-To": "<20260422122424.43776-1-andrei.otcheretianski@intel.com>", "References": "<20260422122424.43776-1-andrei.otcheretianski@intel.com>", "MIME-Version": "1.0", "X-CRM114-Version": "20100106-BlameMichelson ( TRE 0.8.0 (BSD) ) MR-646709E3 ", "X-CRM114-CacheID": "sfid-20260422_052636_780628_DA4B8783 ", "X-CRM114-Status": "GOOD ( 17.67 )", "X-Spam-Score": "-4.4 (----)", "X-Spam-Report": "Spam detection software,\n running on the system \"bombadil.infradead.org\",\n has NOT identified this incoming email as spam. The original\n message has been attached to this so you can view it or label\n similar future email. If you have any questions, see\n the administrator of that system for details.\n Content preview: From: Avraham Stern <avraham.stern@intel.com> When a ND-PMK\n is available for a service,\n add a the Security Context Information attribute\n to publish messages to advertise the set of available Security Context\n Identifiers\n for the service.\n Content analysis details: (-4.4 points, 5.0 required)\n pts rule name description\n ---- ----------------------\n --------------------------------------------------\n -2.3 RCVD_IN_DNSWL_MED RBL: Sender listed at https://www.dnswl.org/,\n medium trust\n [192.198.163.17 listed in list.dnswl.org]\n 0.0 SPF_HELO_NONE SPF: HELO does not publish an SPF Record\n -0.0 SPF_PASS SPF: sender matches SPF record\n -0.1 DKIM_VALID Message has at least one valid DKIM or DK\n signature\n -0.1 DKIM_VALID_AU Message has a valid DKIM or DK signature from\n author's\n domain\n -0.1 DKIM_VALID_EF Message has a valid DKIM or DK signature from\n envelope-from domain\n 0.1 DKIM_SIGNED Message has a DKIM or DK signature,\n not necessarily valid\n -1.9 BAYES_00 BODY: Bayes spam probability is 0 to 1%\n [score: 0.0000]\n -0.0 DKIMWL_WL_HIGH DKIMwl.org - High trust sender", "X-BeenThere": "hostap@lists.infradead.org", "X-Mailman-Version": "2.1.34", "Precedence": "list", "List-Id": "<hostap.lists.infradead.org>", "List-Unsubscribe": "<http://lists.infradead.org/mailman/options/hostap>,\n <mailto:hostap-request@lists.infradead.org?subject=unsubscribe>", "List-Archive": "<http://lists.infradead.org/pipermail/hostap/>", "List-Post": "<mailto:hostap@lists.infradead.org>", "List-Help": "<mailto:hostap-request@lists.infradead.org?subject=help>", "List-Subscribe": "<http://lists.infradead.org/mailman/listinfo/hostap>,\n <mailto:hostap-request@lists.infradead.org?subject=subscribe>", "Content-Type": "text/plain; charset=\"us-ascii\"", "Content-Transfer-Encoding": "7bit", "Sender": "\"Hostap\" <hostap-bounces@lists.infradead.org>", "Errors-To": "hostap-bounces+incoming=patchwork.ozlabs.org@lists.infradead.org" }, "content": "From: Avraham Stern <avraham.stern@intel.com>\n\nWhen a ND-PMK is available for a service, add a the Security Context\nInformation attribute to publish messages to advertise the set of\navailable Security Context Identifiers for the service.\n\nSigned-off-by: Avraham Stern <avraham.stern@intel.com>\n---\n src/common/nan_de.c | 43 +++++++++++++++++++++++++++++++++++++++++++\n src/common/nan_de.h | 3 +++\n 2 files changed, 46 insertions(+)", "diff": "diff --git a/src/common/nan_de.c b/src/common/nan_de.c\nindex acb1ada7f7..779e3f11aa 100644\n--- a/src/common/nan_de.c\n+++ b/src/common/nan_de.c\n@@ -16,6 +16,7 @@\n #include \"ieee802_11_defs.h\"\n #include \"nan_defs.h\"\n #include \"nan_de.h\"\n+#include \"nan/nan_i.h\"\n \n static const u8 nan_network_id[ETH_ALEN] =\n { 0x51, 0x6f, 0x9a, 0x01, 0x00, 0x00 };\n@@ -91,6 +92,9 @@ struct nan_de_service {\n \n \t/* Bitmap of NAN_CS_INFO_CAPA_* */\n \tu8 security_capab;\n+\n+\t/* PMKIDs list for this service */\n+\tstruct dl_list pmkid_list;\n };\n \n #define NAN_DE_N_MIN 5\n@@ -174,6 +178,9 @@ static void nan_de_service_free(struct nan_de_service *srv)\n \twpabuf_free(srv->srf);\n \tos_free(srv->freq_list);\n \tos_free(srv->cipher_suites_list);\n+#ifdef CONFIG_NAN\n+\tnan_crypto_clear_pmkid_list(&srv->pmkid_list);\n+#endif /* CONFIG_NAN */\n \tos_free(srv);\n }\n \n@@ -356,6 +363,15 @@ static void nan_de_tx_sdf(struct nan_de *de, struct nan_de_service *srv,\n \t\t cs_num * sizeof(struct nan_cipher_suite);\n \t}\n \n+\t/* Security Context Information Attribute */\n+\tif (srv->type == NAN_DE_PUBLISH && !dl_list_empty(&srv->pmkid_list)) {\n+\t\tunsigned int list_len = dl_list_len(&srv->pmkid_list);\n+\n+\t\t/* Each entry: sizeof(nan_sec_ctxt) + PMKID_LEN */\n+\t\tlen += NAN_ATTR_HDR_LEN +\n+\t\t list_len * (sizeof(struct nan_sec_ctxt) + PMKID_LEN);\n+\t}\n+\n \tbuf = nan_de_alloc_sdf(len);\n \tif (!buf)\n \t\treturn;\n@@ -447,6 +463,24 @@ static void nan_de_tx_sdf(struct nan_de *de, struct nan_de_service *srv,\n \t\t}\n \t}\n \n+\tif (srv->type == NAN_DE_PUBLISH && !dl_list_empty(&srv->pmkid_list)) {\n+\t\tstruct nan_de_pmkid *pmkid;\n+\t\tu8 *len_ptr;\n+\n+\t\twpabuf_put_u8(buf, NAN_ATTR_SCIA);\n+\t\tlen_ptr = wpabuf_put(buf, 2); /* length filled later */\n+\n+\t\tdl_list_for_each(pmkid, &srv->pmkid_list, struct nan_de_pmkid,\n+\t\t\t\t list) {\n+\t\t\twpabuf_put_le16(buf, PMKID_LEN);\n+\t\t\twpabuf_put_u8(buf, NAN_SEC_CTX_TYPE_ND_PMKID);\n+\t\t\twpabuf_put_u8(buf, srv->id);\n+\t\t\twpabuf_put_data(buf, pmkid->pmkid, PMKID_LEN);\n+\t\t}\n+\n+\t\tWPA_PUT_LE16(len_ptr, (u8 *)wpabuf_put(buf, 0) - len_ptr - 2);\n+\t}\n+\n \tnan_de_tx(de, srv->sync ? 0 : srv->freq, srv->sync ? 0 : wait_time,\n \t\t dst, forced_addr, a3, buf);\n \twpabuf_free(buf);\n@@ -1845,6 +1879,13 @@ int nan_de_publish(struct nan_de *de, const char *service_name,\n \t\t\tgoto fail;\n \t}\n \n+\tdl_list_init(&srv->pmkid_list);\n+#ifdef CONFIG_NAN\n+\tif (nan_crypto_pmkid_list(&srv->pmkid_list, de->nmi, srv->service_id,\n+\t\t\t\t srv->cipher_suites_list, params->nd_pmk) < 0)\n+\t\tgoto fail;\n+#endif /* CONFIG_NAN */\n+\n \t/* Prepare for single and multi-channel states; starting with\n \t * single channel */\n \tsrv->first_multi_chan = true;\n@@ -2124,6 +2165,8 @@ int nan_de_subscribe(struct nan_de *de, const char *service_name,\n \t\t\t \" for subscribe service\", MAC2STR(srv->forced_addr));\n \t}\n \n+\tdl_list_init(&srv->pmkid_list);\n+\n \twpa_printf(MSG_DEBUG, \"NAN: Assigned new subscribe handle %d for %s\",\n \t\t subscribe_id, service_name ? service_name : \"Ranging\");\n \tsrv->id = subscribe_id;\ndiff --git a/src/common/nan_de.h b/src/common/nan_de.h\nindex 089c003486..8af1bb2bc5 100644\n--- a/src/common/nan_de.h\n+++ b/src/common/nan_de.h\n@@ -148,6 +148,9 @@ struct nan_publish_params {\n \n \t/* Bitmap of NAN_CS_INFO_CAPA_* */\n \tu8 security_capab;\n+\n+\t/* ND-PMK to use for creating a list of PMKIDs for the service */\n+\tconst u8 *nd_pmk;\n };\n \n /* Returns -1 on failure or >0 publish_id */\n", "prefixes": [ "50/92" ] }