Blame src/connection-editor/page-wifi-security.c

Packit Service d328f3
// SPDX-License-Identifier: GPL-2.0+
Packit Service d328f3
/* NetworkManager Connection editor -- Connection editor for NetworkManager
Packit Service d328f3
 *
Packit Service d328f3
 * Dan Williams <dcbw@redhat.com>
Packit Service d328f3
 *
Packit Service d328f3
 * Copyright 2008 - 2014 Red Hat, Inc.
Packit Service d328f3
 */
Packit Service d328f3
Packit Service d328f3
#include "nm-default.h"
Packit Service d328f3
Packit Service d328f3
#include <string.h>
Packit Service d328f3
Packit Service d328f3
#include "wireless-security.h"
Packit Service d328f3
#include "page-wifi.h"
Packit Service d328f3
#include "page-wifi-security.h"
Packit Service d328f3
#include "nm-connection-editor.h"
Packit Service d328f3
Packit Service d328f3
G_DEFINE_TYPE (CEPageWifiSecurity, ce_page_wifi_security, CE_TYPE_PAGE)
Packit Service d328f3
Packit Service d328f3
#define CE_PAGE_WIFI_SECURITY_GET_PRIVATE(o) (G_TYPE_INSTANCE_GET_PRIVATE ((o), CE_TYPE_PAGE_WIFI_SECURITY, CEPageWifiSecurityPrivate))
Packit Service d328f3
Packit Service d328f3
typedef struct {
Packit Service d328f3
	GtkSizeGroup *group;
Packit Service d328f3
	GtkComboBox *security_combo;
Packit Service d328f3
	NM80211Mode mode;
Packit Service d328f3
} CEPageWifiSecurityPrivate;
Packit Service d328f3
Packit Service d328f3
#define S_NAME_COLUMN   0
Packit Service d328f3
#define S_SEC_COLUMN    1
Packit Service d328f3
#define S_ADHOC_VALID_COLUMN  2
Packit Service d328f3
#define S_HOTSPOT_VALID_COLUMN  3
Packit Service d328f3
Packit Service d328f3
static const char *known_wsec_props[] = {
Packit Service d328f3
	NM_SETTING_WIRELESS_SECURITY_KEY_MGMT,
Packit Service d328f3
	NM_SETTING_WIRELESS_SECURITY_WEP_TX_KEYIDX,
Packit Service d328f3
	NM_SETTING_WIRELESS_SECURITY_AUTH_ALG,
Packit Service d328f3
	NM_SETTING_WIRELESS_SECURITY_PROTO,
Packit Service d328f3
	NM_SETTING_WIRELESS_SECURITY_PAIRWISE,
Packit Service d328f3
	NM_SETTING_WIRELESS_SECURITY_GROUP,
Packit Service d328f3
	NM_SETTING_WIRELESS_SECURITY_LEAP_USERNAME,
Packit Service d328f3
	NM_SETTING_WIRELESS_SECURITY_WEP_KEY0,
Packit Service d328f3
	NM_SETTING_WIRELESS_SECURITY_WEP_KEY1,
Packit Service d328f3
	NM_SETTING_WIRELESS_SECURITY_WEP_KEY2,
Packit Service d328f3
	NM_SETTING_WIRELESS_SECURITY_WEP_KEY3,
Packit Service d328f3
	NM_SETTING_WIRELESS_SECURITY_WEP_KEY_FLAGS,
Packit Service d328f3
	NM_SETTING_WIRELESS_SECURITY_WEP_KEY_TYPE,
Packit Service d328f3
	NM_SETTING_WIRELESS_SECURITY_PSK,
Packit Service d328f3
	NM_SETTING_WIRELESS_SECURITY_PSK_FLAGS,
Packit Service d328f3
	NM_SETTING_WIRELESS_SECURITY_LEAP_PASSWORD,
Packit Service d328f3
	NM_SETTING_WIRELESS_SECURITY_LEAP_PASSWORD_FLAGS,
Packit Service d328f3
	NULL
Packit Service d328f3
};
Packit Service d328f3
Packit Service d328f3
static const char *known_8021x_props[] = {
Packit Service d328f3
	NM_SETTING_802_1X_EAP,
Packit Service d328f3
	NM_SETTING_802_1X_IDENTITY,
Packit Service d328f3
	NM_SETTING_802_1X_ANONYMOUS_IDENTITY,
Packit Service d328f3
	NM_SETTING_802_1X_PAC_FILE,
Packit Service d328f3
	NM_SETTING_802_1X_CA_CERT,
Packit Service d328f3
	NM_SETTING_802_1X_CA_PATH,
Packit Service d328f3
	NM_SETTING_802_1X_CLIENT_CERT,
Packit Service d328f3
	NM_SETTING_802_1X_PHASE1_PEAPVER,
Packit Service d328f3
	NM_SETTING_802_1X_PHASE2_AUTH,
Packit Service d328f3
	NM_SETTING_802_1X_PHASE2_AUTHEAP,
Packit Service d328f3
	NM_SETTING_802_1X_PHASE2_CA_CERT,
Packit Service d328f3
	NM_SETTING_802_1X_PHASE2_CA_PATH,
Packit Service d328f3
	NM_SETTING_802_1X_PHASE2_CLIENT_CERT,
Packit Service d328f3
	NM_SETTING_802_1X_PASSWORD,
Packit Service d328f3
	NM_SETTING_802_1X_PASSWORD_FLAGS,
Packit Service d328f3
	NM_SETTING_802_1X_PRIVATE_KEY,
Packit Service d328f3
	NM_SETTING_802_1X_PRIVATE_KEY_PASSWORD,
Packit Service d328f3
	NM_SETTING_802_1X_PRIVATE_KEY_PASSWORD_FLAGS,
Packit Service d328f3
	NM_SETTING_802_1X_PHASE2_PRIVATE_KEY,
Packit Service d328f3
	NM_SETTING_802_1X_PHASE2_PRIVATE_KEY_PASSWORD,
Packit Service d328f3
	NM_SETTING_802_1X_PHASE2_PRIVATE_KEY_PASSWORD_FLAGS,
Packit Service d328f3
	NM_SETTING_802_1X_DOMAIN_SUFFIX_MATCH,
Packit Service d328f3
	NM_SETTING_802_1X_PHASE2_DOMAIN_SUFFIX_MATCH,
Packit Service d328f3
	NULL
Packit Service d328f3
};
Packit Service d328f3
Packit Service d328f3
static gboolean
Packit Service d328f3
find_proto (NMSettingWirelessSecurity *sec, const char *item)
Packit Service d328f3
{
Packit Service d328f3
	guint32 i;
Packit Service d328f3
Packit Service d328f3
	for (i = 0; i < nm_setting_wireless_security_get_num_protos (sec); i++) {
Packit Service d328f3
		if (!strcmp (item, nm_setting_wireless_security_get_proto (sec, i)))
Packit Service d328f3
			return TRUE;
Packit Service d328f3
	}
Packit Service d328f3
	return FALSE;
Packit Service d328f3
}
Packit Service d328f3
Packit Service d328f3
static NMUtilsSecurityType
Packit Service d328f3
get_default_type_for_security (NMSettingWirelessSecurity *sec)
Packit Service d328f3
{
Packit Service d328f3
	const char *key_mgmt, *auth_alg;
Packit Service d328f3
Packit Service d328f3
	g_return_val_if_fail (sec != NULL, NMU_SEC_NONE);
Packit Service d328f3
Packit Service d328f3
	key_mgmt = nm_setting_wireless_security_get_key_mgmt (sec);
Packit Service d328f3
	auth_alg = nm_setting_wireless_security_get_auth_alg (sec);
Packit Service d328f3
Packit Service d328f3
	/* No IEEE 802.1X */
Packit Service d328f3
	if (!strcmp (key_mgmt, "none"))
Packit Service d328f3
		return NMU_SEC_STATIC_WEP;
Packit Service d328f3
Packit Service d328f3
	if (!strcmp (key_mgmt, "ieee8021x")) {
Packit Service d328f3
		if (auth_alg && !strcmp (auth_alg, "leap"))
Packit Service d328f3
			return NMU_SEC_LEAP;
Packit Service d328f3
		return NMU_SEC_DYNAMIC_WEP;
Packit Service d328f3
	}
Packit Service d328f3
Packit Service d328f3
	if (   !strcmp (key_mgmt, "wpa-none")
Packit Service d328f3
	    || !strcmp (key_mgmt, "wpa-psk")) {
Packit Service d328f3
		if (find_proto (sec, "rsn"))
Packit Service d328f3
			return NMU_SEC_WPA2_PSK;
Packit Service d328f3
		else if (find_proto (sec, "wpa"))
Packit Service d328f3
			return NMU_SEC_WPA_PSK;
Packit Service d328f3
		else
Packit Service d328f3
			return NMU_SEC_WPA_PSK;
Packit Service d328f3
	}
Packit Service d328f3
Packit Service d328f3
	if (!strcmp (key_mgmt, "wpa-eap")) {
Packit Service d328f3
		if (find_proto (sec, "rsn"))
Packit Service d328f3
			return NMU_SEC_WPA2_ENTERPRISE;
Packit Service d328f3
		else if (find_proto (sec, "wpa"))
Packit Service d328f3
			return NMU_SEC_WPA_ENTERPRISE;
Packit Service d328f3
		else
Packit Service d328f3
			return NMU_SEC_WPA_ENTERPRISE;
Packit Service d328f3
	}
Packit Service d328f3
Packit Service d328f3
	if (!strcmp (key_mgmt, "sae"))
Packit Service d328f3
		return NMU_SEC_SAE;
Packit Service d328f3
Packit Service d328f3
#if NM_CHECK_VERSION(1,24,0)
Packit Service d328f3
	if (!strcmp (key_mgmt, "owe"))
Packit Service d328f3
		return NMU_SEC_OWE;
Packit Service d328f3
#endif
Packit Service d328f3
Packit Service d328f3
	return NMU_SEC_INVALID;
Packit Service d328f3
}
Packit Service d328f3
Packit Service d328f3
static void
Packit Service d328f3
stuff_changed_cb (WirelessSecurity *sec, gpointer user_data)
Packit Service d328f3
{
Packit Service d328f3
	ce_page_changed (CE_PAGE (user_data));
Packit Service d328f3
}
Packit Service d328f3
Packit Service d328f3
static void
Packit Service d328f3
wsec_size_group_clear (GtkSizeGroup *group)
Packit Service d328f3
{
Packit Service d328f3
	GSList *iter;
Packit Service d328f3
Packit Service d328f3
	g_return_if_fail (group != NULL);
Packit Service d328f3
Packit Service d328f3
	iter = gtk_size_group_get_widgets (group);
Packit Service d328f3
	while (iter) {
Packit Service d328f3
		gtk_size_group_remove_widget (group, GTK_WIDGET (iter->data));
Packit Service d328f3
		iter = gtk_size_group_get_widgets (group);
Packit Service d328f3
	}
Packit Service d328f3
}
Packit Service d328f3
Packit Service d328f3
static WirelessSecurity *
Packit Service d328f3
wireless_security_combo_get_active (CEPageWifiSecurity *self)
Packit Service d328f3
{
Packit Service d328f3
	CEPageWifiSecurityPrivate *priv = CE_PAGE_WIFI_SECURITY_GET_PRIVATE (self);
Packit Service d328f3
	GtkTreeIter iter;
Packit Service d328f3
	GtkTreeModel *model;
Packit Service d328f3
	WirelessSecurity *sec = NULL;
Packit Service d328f3
Packit Service d328f3
	model = gtk_combo_box_get_model (priv->security_combo);
Packit Service d328f3
	gtk_combo_box_get_active_iter (priv->security_combo, &iter);
Packit Service d328f3
	gtk_tree_model_get (model, &iter, S_SEC_COLUMN, &sec, -1);
Packit Service d328f3
Packit Service d328f3
	return sec;
Packit Service d328f3
}
Packit Service d328f3
Packit Service d328f3
static void
Packit Service d328f3
wireless_security_combo_changed (GtkComboBox *combo,
Packit Service d328f3
                                 gpointer user_data)
Packit Service d328f3
{
Packit Service d328f3
	CEPageWifiSecurity *self = CE_PAGE_WIFI_SECURITY (user_data);
Packit Service d328f3
	CEPageWifiSecurityPrivate *priv = CE_PAGE_WIFI_SECURITY_GET_PRIVATE (self);
Packit Service d328f3
	GtkWidget *vbox;
Packit Service d328f3
	GList *elt, *children;
Packit Service d328f3
	WirelessSecurity *sec;
Packit Service d328f3
Packit Service d328f3
	vbox = GTK_WIDGET (gtk_builder_get_object (CE_PAGE (self)->builder, "wifi_security_vbox"));
Packit Service d328f3
	g_assert (vbox);
Packit Service d328f3
Packit Service d328f3
	wsec_size_group_clear (priv->group);
Packit Service d328f3
Packit Service d328f3
	/* Remove any previous wifi security widgets */
Packit Service d328f3
	children = gtk_container_get_children (GTK_CONTAINER (vbox));
Packit Service d328f3
	for (elt = children; elt; elt = g_list_next (elt))
Packit Service d328f3
		gtk_container_remove (GTK_CONTAINER (vbox), GTK_WIDGET (elt->data));
Packit Service d328f3
Packit Service d328f3
	sec = wireless_security_combo_get_active (self);
Packit Service d328f3
	if (sec) {
Packit Service d328f3
		GtkWidget *sec_widget;
Packit Service d328f3
		GtkWidget *widget, *parent;
Packit Service d328f3
Packit Service d328f3
		sec_widget = wireless_security_get_widget (sec);
Packit Service d328f3
		g_assert (sec_widget);
Packit Service d328f3
		parent = gtk_widget_get_parent (sec_widget);
Packit Service d328f3
		if (parent)
Packit Service d328f3
			gtk_container_remove (GTK_CONTAINER (parent), sec_widget);
Packit Service d328f3
Packit Service d328f3
		widget = GTK_WIDGET (gtk_builder_get_object (CE_PAGE (self)->builder, "wifi_security_combo_label"));
Packit Service d328f3
		gtk_size_group_add_widget (priv->group, widget);
Packit Service d328f3
		wireless_security_add_to_size_group (sec, priv->group);
Packit Service d328f3
Packit Service d328f3
		gtk_container_add (GTK_CONTAINER (vbox), sec_widget);
Packit Service d328f3
		wireless_security_unref (sec);
Packit Service d328f3
	}
Packit Service d328f3
Packit Service d328f3
	ce_page_changed (CE_PAGE (self));
Packit Service d328f3
}
Packit Service d328f3
Packit Service d328f3
static void
Packit Service d328f3
add_security_item (CEPageWifiSecurity *self,
Packit Service d328f3
                   WirelessSecurity *sec,
Packit Service d328f3
                   GtkListStore *model,
Packit Service d328f3
                   GtkTreeIter *iter,
Packit Service d328f3
                   const char *text,
Packit Service d328f3
                   gboolean adhoc_valid,
Packit Service d328f3
                   gboolean hotspot_valid)
Packit Service d328f3
{
Packit Service d328f3
	wireless_security_set_changed_notify (sec, stuff_changed_cb, self);
Packit Service d328f3
	gtk_list_store_append (model, iter);
Packit Service d328f3
	gtk_list_store_set (model, iter,
Packit Service d328f3
	                    S_NAME_COLUMN, text,
Packit Service d328f3
	                    S_SEC_COLUMN, sec,
Packit Service d328f3
	                    S_ADHOC_VALID_COLUMN, adhoc_valid,
Packit Service d328f3
	                    S_HOTSPOT_VALID_COLUMN, hotspot_valid,
Packit Service d328f3
	                    -1);
Packit Service d328f3
	wireless_security_unref (sec);
Packit Service d328f3
}
Packit Service d328f3
Packit Service d328f3
static void
Packit Service d328f3
set_sensitive (GtkCellLayout *cell_layout,
Packit Service d328f3
               GtkCellRenderer *cell,
Packit Service d328f3
               GtkTreeModel *tree_model,
Packit Service d328f3
               GtkTreeIter *iter,
Packit Service d328f3
               gpointer data)
Packit Service d328f3
{
Packit Service d328f3
	NM80211Mode *mode = data;
Packit Service d328f3
	gboolean sensitive = TRUE;
Packit Service d328f3
Packit Service d328f3
	if (*mode == NM_802_11_MODE_ADHOC)
Packit Service d328f3
		gtk_tree_model_get (tree_model, iter, S_ADHOC_VALID_COLUMN, &sensitive, -1);
Packit Service d328f3
	else if (*mode == NM_802_11_MODE_AP)
Packit Service d328f3
		gtk_tree_model_get (tree_model, iter, S_HOTSPOT_VALID_COLUMN, &sensitive, -1);
Packit Service d328f3
Packit Service d328f3
	g_object_set (cell, "sensitive", sensitive, NULL);
Packit Service d328f3
}
Packit Service d328f3
Packit Service d328f3
static gboolean
Packit Service d328f3
security_valid (NMUtilsSecurityType sectype, NM80211Mode mode)
Packit Service d328f3
{
Packit Service d328f3
	guint32 dev_caps = 0;
Packit Service d328f3
Packit Service d328f3
	/* Fake some device capabilities here since we don't know about the
Packit Service d328f3
	 * NMDevice object to get the card's real capabilities.
Packit Service d328f3
	 */
Packit Service d328f3
	dev_caps =   NM_WIFI_DEVICE_CAP_CIPHER_WEP40
Packit Service d328f3
	           | NM_WIFI_DEVICE_CAP_CIPHER_WEP104
Packit Service d328f3
	           | NM_WIFI_DEVICE_CAP_CIPHER_TKIP
Packit Service d328f3
	           | NM_WIFI_DEVICE_CAP_CIPHER_CCMP
Packit Service d328f3
	           | NM_WIFI_DEVICE_CAP_WPA
Packit Service d328f3
	           | NM_WIFI_DEVICE_CAP_RSN;
Packit Service d328f3
Packit Service d328f3
	switch (mode) {
Packit Service d328f3
	case NM_802_11_MODE_AP:
Packit Service d328f3
		if (sectype == NMU_SEC_SAE)
Packit Service d328f3
			return TRUE;
Packit Service d328f3
		return nm_utils_ap_mode_security_valid (sectype, NM_WIFI_DEVICE_CAP_AP);
Packit Service d328f3
	case NM_802_11_MODE_ADHOC:
Packit Service d328f3
	case NM_802_11_MODE_INFRA:
Packit Service d328f3
	default:
Packit Service d328f3
		return nm_utils_security_valid (sectype,
Packit Service d328f3
		                                dev_caps,
Packit Service d328f3
		                                FALSE,
Packit Service d328f3
		                                (mode == NM_802_11_MODE_ADHOC),
Packit Service d328f3
		                                0, 0, 0);
Packit Service d328f3
	}
Packit Service d328f3
	g_assert_not_reached ();
Packit Service d328f3
}
Packit Service d328f3
Packit Service d328f3
static void
Packit Service d328f3
finish_setup (CEPageWifiSecurity *self, gpointer user_data)
Packit Service d328f3
{
Packit Service d328f3
	CEPage *parent = CE_PAGE (self);
Packit Service d328f3
	CEPageWifiSecurityPrivate *priv = CE_PAGE_WIFI_SECURITY_GET_PRIVATE (self);
Packit Service d328f3
	NMSettingWireless *s_wireless;
Packit Service d328f3
	NMSettingWirelessSecurity *s_wireless_sec;
Packit Service d328f3
	NMConnection *connection = parent->connection;
Packit Service d328f3
	NM80211Mode mode = NM_802_11_MODE_INFRA;
Packit Service d328f3
	GtkListStore *sec_model;
Packit Service d328f3
	GtkTreeIter iter;
Packit Service d328f3
	NMUtilsSecurityType default_type = NMU_SEC_NONE;
Packit Service d328f3
	int active = -1;
Packit Service d328f3
	int item = 0;
Packit Service d328f3
	GtkComboBox *combo;
Packit Service d328f3
	GtkCellRenderer *renderer;
Packit Service d328f3
Packit Service d328f3
	s_wireless = nm_connection_get_setting_wireless (connection);
Packit Service d328f3
	g_assert (s_wireless);
Packit Service d328f3
Packit Service d328f3
	if (!g_strcmp0 (nm_setting_wireless_get_mode (s_wireless), "adhoc"))
Packit Service d328f3
		mode = NM_802_11_MODE_ADHOC;
Packit Service d328f3
	else if (!g_strcmp0 (nm_setting_wireless_get_mode (s_wireless), "ap"))
Packit Service d328f3
		mode = NM_802_11_MODE_AP;
Packit Service d328f3
Packit Service d328f3
	s_wireless_sec = nm_connection_get_setting_wireless_security (connection);
Packit Service d328f3
Packit Service d328f3
	if (s_wireless_sec)
Packit Service d328f3
		default_type = get_default_type_for_security (s_wireless_sec);
Packit Service d328f3
Packit Service d328f3
	sec_model = gtk_list_store_new (4, G_TYPE_STRING, WIRELESS_TYPE_SECURITY, G_TYPE_BOOLEAN, G_TYPE_BOOLEAN);
Packit Service d328f3
Packit Service d328f3
	if (security_valid (NMU_SEC_NONE, mode)) {
Packit Service d328f3
		gtk_list_store_append (sec_model, &iter);
Packit Service d328f3
		gtk_list_store_set (sec_model, &iter,
Packit Service d328f3
		                    S_NAME_COLUMN, C_("Wi-Fi/Ethernet security", "None"),
Packit Service d328f3
		                    S_ADHOC_VALID_COLUMN, TRUE,
Packit Service d328f3
		                    S_HOTSPOT_VALID_COLUMN, TRUE,
Packit Service d328f3
		                    -1);
Packit Service d328f3
		if (default_type == NMU_SEC_NONE)
Packit Service d328f3
			active = item;
Packit Service d328f3
		item++;
Packit Service d328f3
	}
Packit Service d328f3
Packit Service d328f3
	if (security_valid (NMU_SEC_STATIC_WEP, mode)) {
Packit Service d328f3
		WirelessSecurityWEPKey *ws_wep;
Packit Service d328f3
		NMWepKeyType wep_type = NM_WEP_KEY_TYPE_KEY;
Packit Service d328f3
Packit Service d328f3
		if (default_type == NMU_SEC_STATIC_WEP) {
Packit Service d328f3
			NMSettingWirelessSecurity *s_wsec;
Packit Service d328f3
Packit Service d328f3
			s_wsec = nm_connection_get_setting_wireless_security (connection);
Packit Service d328f3
			if (s_wsec)
Packit Service d328f3
				wep_type = nm_setting_wireless_security_get_wep_key_type (s_wsec);
Packit Service d328f3
			if (wep_type == NM_WEP_KEY_TYPE_UNKNOWN)
Packit Service d328f3
				wep_type = NM_WEP_KEY_TYPE_KEY;
Packit Service d328f3
		}
Packit Service d328f3
Packit Service d328f3
		ws_wep = ws_wep_key_new (connection, NM_WEP_KEY_TYPE_KEY, FALSE, FALSE);
Packit Service d328f3
		if (ws_wep) {
Packit Service d328f3
			add_security_item (self, WIRELESS_SECURITY (ws_wep), sec_model,
Packit Service d328f3
			                   &iter, _("WEP 40/128-bit Key (Hex or ASCII)"),
Packit Service d328f3
			                   TRUE, TRUE);
Packit Service d328f3
			if ((active < 0) && (default_type == NMU_SEC_STATIC_WEP) && (wep_type == NM_WEP_KEY_TYPE_KEY))
Packit Service d328f3
				active = item;
Packit Service d328f3
			item++;
Packit Service d328f3
		}
Packit Service d328f3
Packit Service d328f3
		ws_wep = ws_wep_key_new (connection, NM_WEP_KEY_TYPE_PASSPHRASE, FALSE, FALSE);
Packit Service d328f3
		if (ws_wep) {
Packit Service d328f3
			add_security_item (self, WIRELESS_SECURITY (ws_wep), sec_model,
Packit Service d328f3
			                   &iter, _("WEP 128-bit Passphrase"), TRUE, TRUE);
Packit Service d328f3
			if ((active < 0) && (default_type == NMU_SEC_STATIC_WEP) && (wep_type == NM_WEP_KEY_TYPE_PASSPHRASE))
Packit Service d328f3
				active = item;
Packit Service d328f3
			item++;
Packit Service d328f3
		}
Packit Service d328f3
	}
Packit Service d328f3
Packit Service d328f3
	if (security_valid (NMU_SEC_LEAP, mode)) {
Packit Service d328f3
		WirelessSecurityLEAP *ws_leap;
Packit Service d328f3
Packit Service d328f3
		ws_leap = ws_leap_new (connection, FALSE);
Packit Service d328f3
		if (ws_leap) {
Packit Service d328f3
			add_security_item (self, WIRELESS_SECURITY (ws_leap), sec_model,
Packit Service d328f3
			                   &iter, _("LEAP"), FALSE, FALSE);
Packit Service d328f3
			if ((active < 0) && (default_type == NMU_SEC_LEAP))
Packit Service d328f3
				active = item;
Packit Service d328f3
			item++;
Packit Service d328f3
		}
Packit Service d328f3
	}
Packit Service d328f3
Packit Service d328f3
	if (security_valid (NMU_SEC_DYNAMIC_WEP, mode)) {
Packit Service d328f3
		WirelessSecurityDynamicWEP *ws_dynamic_wep;
Packit Service d328f3
Packit Service d328f3
		ws_dynamic_wep = ws_dynamic_wep_new (connection, TRUE, FALSE);
Packit Service d328f3
		if (ws_dynamic_wep) {
Packit Service d328f3
			add_security_item (self, WIRELESS_SECURITY (ws_dynamic_wep), sec_model,
Packit Service d328f3
			                   &iter, _("Dynamic WEP (802.1X)"), FALSE, FALSE);
Packit Service d328f3
			if ((active < 0) && (default_type == NMU_SEC_DYNAMIC_WEP))
Packit Service d328f3
				active = item;
Packit Service d328f3
			item++;
Packit Service d328f3
		}
Packit Service d328f3
	}
Packit Service d328f3
Packit Service d328f3
	if (security_valid (NMU_SEC_WPA_PSK, mode) || security_valid (NMU_SEC_WPA2_PSK, mode)) {
Packit Service d328f3
		WirelessSecurityWPAPSK *ws_wpa_psk;
Packit Service d328f3
Packit Service d328f3
		ws_wpa_psk = ws_wpa_psk_new (connection, FALSE);
Packit Service d328f3
		if (ws_wpa_psk) {
Packit Service d328f3
			add_security_item (self, WIRELESS_SECURITY (ws_wpa_psk), sec_model,
Packit Service d328f3
			                   &iter, _("WPA & WPA2 Personal"), TRUE, TRUE);
Packit Service d328f3
			if ((active < 0) && ((default_type == NMU_SEC_WPA_PSK) || (default_type == NMU_SEC_WPA2_PSK)))
Packit Service d328f3
				active = item;
Packit Service d328f3
			item++;
Packit Service d328f3
		}
Packit Service d328f3
	}
Packit Service d328f3
Packit Service d328f3
	if (security_valid (NMU_SEC_WPA_ENTERPRISE, mode) || security_valid (NMU_SEC_WPA2_ENTERPRISE, mode)) {
Packit Service d328f3
		WirelessSecurityWPAEAP *ws_wpa_eap;
Packit Service d328f3
Packit Service d328f3
		ws_wpa_eap = ws_wpa_eap_new (connection, TRUE, FALSE, NULL);
Packit Service d328f3
		if (ws_wpa_eap) {
Packit Service d328f3
			add_security_item (self, WIRELESS_SECURITY (ws_wpa_eap), sec_model,
Packit Service d328f3
			                   &iter, _("WPA & WPA2 Enterprise"), FALSE, FALSE);
Packit Service d328f3
			if ((active < 0) && ((default_type == NMU_SEC_WPA_ENTERPRISE) || (default_type == NMU_SEC_WPA2_ENTERPRISE)))
Packit Service d328f3
				active = item;
Packit Service d328f3
			item++;
Packit Service d328f3
		}
Packit Service d328f3
	}
Packit Service d328f3
Packit Service d328f3
	if (security_valid (NMU_SEC_SAE, mode)) {
Packit Service d328f3
		WirelessSecuritySAE *ws_sae;
Packit Service d328f3
Packit Service d328f3
		ws_sae = ws_sae_new (connection, FALSE);
Packit Service d328f3
		if (ws_sae) {
Packit Service d328f3
			add_security_item (self, WIRELESS_SECURITY (ws_sae), sec_model,
Packit Service d328f3
			                   &iter, _("WPA3 Personal"), TRUE, TRUE);
Packit Service d328f3
			if ((active < 0) && ((default_type == NMU_SEC_SAE)))
Packit Service d328f3
				active = item;
Packit Service d328f3
			item++;
Packit Service d328f3
		}
Packit Service d328f3
	}
Packit Service d328f3
Packit Service d328f3
#if NM_CHECK_VERSION(1,24,0)
Packit Service d328f3
	if (security_valid (NMU_SEC_OWE, mode)) {
Packit Service d328f3
		gtk_list_store_append (sec_model, &iter);
Packit Service d328f3
		gtk_list_store_set (sec_model, &iter,
Packit Service d328f3
		                    S_NAME_COLUMN, _("Enhanced Open"),
Packit Service d328f3
		                    S_ADHOC_VALID_COLUMN, FALSE,
Packit Service d328f3
		                    S_HOTSPOT_VALID_COLUMN, TRUE,
Packit Service d328f3
		                    -1);
Packit Service d328f3
		if ((active < 0) && (default_type == NMU_SEC_OWE))
Packit Service d328f3
			active = item;
Packit Service d328f3
		item++;
Packit Service d328f3
	}
Packit Service d328f3
#endif
Packit Service d328f3
Packit Service d328f3
	combo = GTK_COMBO_BOX (gtk_builder_get_object (parent->builder, "wifi_security_combo"));
Packit Service d328f3
	gtk_combo_box_set_model (combo, GTK_TREE_MODEL (sec_model));
Packit Service d328f3
	gtk_cell_layout_clear (GTK_CELL_LAYOUT (combo));
Packit Service d328f3
Packit Service d328f3
	renderer = gtk_cell_renderer_text_new ();
Packit Service d328f3
	gtk_cell_layout_pack_start (GTK_CELL_LAYOUT (combo), renderer, TRUE);
Packit Service d328f3
	gtk_cell_layout_set_attributes (GTK_CELL_LAYOUT (combo), renderer, "text", S_NAME_COLUMN, NULL);
Packit Service d328f3
	gtk_cell_layout_set_cell_data_func (GTK_CELL_LAYOUT (combo), renderer, set_sensitive, &priv->mode, NULL);
Packit Service d328f3
Packit Service d328f3
	gtk_combo_box_set_active (combo, active < 0 ? 0 : (guint32) active);
Packit Service d328f3
	g_object_unref (G_OBJECT (sec_model));
Packit Service d328f3
Packit Service d328f3
	priv->security_combo = combo;
Packit Service d328f3
Packit Service d328f3
	wireless_security_combo_changed (combo, self);
Packit Service d328f3
	g_signal_connect (combo, "changed",
Packit Service d328f3
	                  G_CALLBACK (wireless_security_combo_changed),
Packit Service d328f3
	                  self);
Packit Service d328f3
}
Packit Service d328f3
Packit Service d328f3
CEPage *
Packit Service d328f3
ce_page_wifi_security_new (NMConnectionEditor *editor,
Packit Service d328f3
                           NMConnection *connection,
Packit Service d328f3
                           GtkWindow *parent_window,
Packit Service d328f3
                           NMClient *client,
Packit Service d328f3
                           const char **out_secrets_setting_name,
Packit Service d328f3
                           GError **error)
Packit Service d328f3
{
Packit Service d328f3
	CEPageWifiSecurity *self;
Packit Service d328f3
	NMSettingWireless *s_wireless;
Packit Service d328f3
	NMSetting8021x *s_8021x;
Packit Service d328f3
	NMSettingWirelessSecurity *s_wsec = NULL;
Packit Service d328f3
	NMUtilsSecurityType default_type = NMU_SEC_NONE;
Packit Service d328f3
Packit Service d328f3
	s_wireless = nm_connection_get_setting_wireless (connection);
Packit Service d328f3
	if (!s_wireless) {
Packit Service d328f3
		g_set_error_literal (error, NMA_ERROR, NMA_ERROR_GENERIC, _("Could not load Wi-Fi security user interface; missing Wi-Fi setting."));
Packit Service d328f3
		return NULL;
Packit Service d328f3
	}
Packit Service d328f3
Packit Service d328f3
	self = CE_PAGE_WIFI_SECURITY (ce_page_new (CE_TYPE_PAGE_WIFI_SECURITY,
Packit Service d328f3
	                                           editor,
Packit Service d328f3
	                                           connection,
Packit Service d328f3
	                                           parent_window,
Packit Service d328f3
	                                           client,
Packit Service d328f3
	                                           "/org/gnome/nm_connection_editor/ce-page-wifi-security.ui",
Packit Service d328f3
	                                           "WifiSecurityPage",
Packit Service d328f3
	                                           _("Wi-Fi Security")));
Packit Service d328f3
	if (!self) {
Packit Service d328f3
		g_set_error_literal (error, NMA_ERROR, NMA_ERROR_GENERIC, _("Could not load Wi-Fi security user interface."));
Packit Service d328f3
		return NULL;
Packit Service d328f3
	}
Packit Service d328f3
Packit Service d328f3
	CE_PAGE_WIFI_SECURITY_GET_PRIVATE (self)->group = gtk_size_group_new (GTK_SIZE_GROUP_HORIZONTAL);
Packit Service d328f3
Packit Service d328f3
	s_wsec = nm_connection_get_setting_wireless_security (connection);
Packit Service d328f3
	s_8021x = nm_connection_get_setting_802_1x (connection);
Packit Service d328f3
Packit Service d328f3
	if (s_wsec)
Packit Service d328f3
		default_type = get_default_type_for_security (s_wsec);
Packit Service d328f3
Packit Service d328f3
	/* Get secrets if the connection is not 802.1X enabled */
Packit Service d328f3
	if (   default_type == NMU_SEC_STATIC_WEP
Packit Service d328f3
	    || default_type == NMU_SEC_LEAP
Packit Service d328f3
	    || default_type == NMU_SEC_SAE
Packit Service d328f3
	    || default_type == NMU_SEC_WPA_PSK
Packit Service d328f3
	    || default_type == NMU_SEC_WPA2_PSK) {
Packit Service d328f3
		*out_secrets_setting_name = NM_SETTING_WIRELESS_SECURITY_SETTING_NAME;
Packit Service d328f3
	}
Packit Service d328f3
Packit Service d328f3
	/* Or if it is 802.1X enabled */
Packit Service d328f3
	if (   default_type == NMU_SEC_DYNAMIC_WEP
Packit Service d328f3
	    || default_type == NMU_SEC_WPA_ENTERPRISE
Packit Service d328f3
	    || default_type == NMU_SEC_WPA2_ENTERPRISE) {
Packit Service d328f3
		*out_secrets_setting_name = NM_SETTING_802_1X_SETTING_NAME;
Packit Service d328f3
		nm_connection_editor_check_unsupported_properties (editor, (NMSetting *) s_8021x, known_8021x_props);
Packit Service d328f3
	}
Packit Service d328f3
Packit Service d328f3
	nm_connection_editor_check_unsupported_properties (editor, (NMSetting *) s_wsec, known_wsec_props);
Packit Service d328f3
Packit Service d328f3
	g_signal_connect (self, CE_PAGE_INITIALIZED, G_CALLBACK (finish_setup), NULL);
Packit Service d328f3
Packit Service d328f3
	return CE_PAGE (self);
Packit Service d328f3
}
Packit Service d328f3
Packit Service d328f3
static void
Packit Service d328f3
ce_page_wifi_security_init (CEPageWifiSecurity *self)
Packit Service d328f3
{
Packit Service d328f3
}
Packit Service d328f3
Packit Service d328f3
static void
Packit Service d328f3
dispose (GObject *object)
Packit Service d328f3
{
Packit Service d328f3
	CEPageWifiSecurityPrivate *priv = CE_PAGE_WIFI_SECURITY_GET_PRIVATE (object);
Packit Service d328f3
Packit Service d328f3
	g_clear_object (&priv->group);
Packit Service d328f3
Packit Service d328f3
	G_OBJECT_CLASS (ce_page_wifi_security_parent_class)->dispose (object);
Packit Service d328f3
}
Packit Service d328f3
Packit Service d328f3
static gboolean
Packit Service d328f3
ce_page_validate_v (CEPage *page, NMConnection *connection, GError **error)
Packit Service d328f3
{
Packit Service d328f3
	CEPageWifiSecurity *self = CE_PAGE_WIFI_SECURITY (page);
Packit Service d328f3
	CEPageWifiSecurityPrivate *priv = CE_PAGE_WIFI_SECURITY_GET_PRIVATE (self);
Packit Service d328f3
	NMSettingWireless *s_wireless;
Packit Service d328f3
	WirelessSecurity *sec;
Packit Service d328f3
	gboolean valid = FALSE;
Packit Service d328f3
	const char *mode;
Packit Service d328f3
Packit Service d328f3
	s_wireless = nm_connection_get_setting_wireless (connection);
Packit Service d328f3
	g_assert (s_wireless);
Packit Service d328f3
Packit Service d328f3
	mode = nm_setting_wireless_get_mode (s_wireless);
Packit Service d328f3
	if (g_strcmp0 (mode, NM_SETTING_WIRELESS_MODE_ADHOC) == 0)
Packit Service d328f3
		priv->mode = NM_802_11_MODE_ADHOC;
Packit Service d328f3
	else if (g_strcmp0 (mode, NM_SETTING_WIRELESS_MODE_AP) == 0)
Packit Service d328f3
		priv->mode = NM_802_11_MODE_AP;
Packit Service d328f3
	else
Packit Service d328f3
		priv->mode = NM_802_11_MODE_INFRA;
Packit Service d328f3
Packit Service d328f3
	sec = wireless_security_combo_get_active (self);
Packit Service d328f3
	if (sec) {
Packit Service d328f3
		GBytes *ssid = nm_setting_wireless_get_ssid (s_wireless);
Packit Service d328f3
Packit Service d328f3
		if (ssid) {
Packit Service d328f3
			valid = wireless_security_validate (sec, error);
Packit Service d328f3
			if (valid)
Packit Service d328f3
				wireless_security_fill_connection (sec, connection);
Packit Service d328f3
		} else {
Packit Service d328f3
			g_set_error (error, NMA_ERROR, NMA_ERROR_GENERIC, _("missing SSID"));
Packit Service d328f3
			valid = FALSE;
Packit Service d328f3
		}
Packit Service d328f3
Packit Service d328f3
		if (priv->mode == NM_802_11_MODE_ADHOC) {
Packit Service d328f3
			if (!wireless_security_adhoc_compatible (sec)) {
Packit Service d328f3
				g_set_error (error, NMA_ERROR, NMA_ERROR_GENERIC, _("Security not compatible with Ad-Hoc mode"));
Packit Service d328f3
				valid = FALSE;
Packit Service d328f3
			}
Packit Service d328f3
		}
Packit Service d328f3
Packit Service d328f3
		wireless_security_unref (sec);
Packit Service d328f3
	} else {
Packit Service d328f3
		/* No security, unencrypted */
Packit Service d328f3
		nm_connection_remove_setting (connection, NM_TYPE_SETTING_WIRELESS_SECURITY);
Packit Service d328f3
		nm_connection_remove_setting (connection, NM_TYPE_SETTING_802_1X);
Packit Service d328f3
		valid = TRUE;
Packit Service d328f3
	}
Packit Service d328f3
Packit Service d328f3
	return valid;
Packit Service d328f3
}
Packit Service d328f3
Packit Service d328f3
static void
Packit Service d328f3
ce_page_wifi_security_class_init (CEPageWifiSecurityClass *wireless_security_class)
Packit Service d328f3
{
Packit Service d328f3
	GObjectClass *object_class = G_OBJECT_CLASS (wireless_security_class);
Packit Service d328f3
	CEPageClass *parent_class = CE_PAGE_CLASS (wireless_security_class);
Packit Service d328f3
Packit Service d328f3
	g_type_class_add_private (object_class, sizeof (CEPageWifiSecurityPrivate));
Packit Service d328f3
Packit Service d328f3
	/* virtual methods */
Packit Service d328f3
	object_class->dispose = dispose;
Packit Service d328f3
Packit Service d328f3
	parent_class->ce_page_validate_v = ce_page_validate_v;
Packit Service d328f3
}