path: root/src/ap/wpa_auth_i.h
diff options
authorJouni Malinen <j@w1.fi>2010-04-07 18:04:13 (GMT)
committerJouni Malinen <j@w1.fi>2010-04-07 18:04:13 (GMT)
commit26e23750b950cb6e460a058668e9c59a194d1d76 (patch)
tree94199742bf778eb44f473d3c1b69ec389277153d /src/ap/wpa_auth_i.h
parent738a1cb286ee108f6314e0e2ab799b1a526d81d2 (diff)
FT: Fix FT 4-Way Handshake to include PMKR1Name in messages 2 and 3
IEEE Std 802.11r-2008, 11A.4.2 describes FT initial mobility domain association in an RSN to include PMKR1Name in the PMKID-List field in RSN IE in messages 2/4 and 3/4. This makes the RSN IE not be bitwise identical with the values used in Beacon, Probe Response, (Re)association Request frames. The previous versions of wpa_supplicant and hostapd did not add the PMKR1Name value in EAPOL-Key frame and did not accept it if added (due to bitwise comparison of RSN IEs). This commit fixes the implementation to be compliant with the standard by adding the PMKR1Name value into EAPOL-Key messages during FT 4-Way Handshake and by verifying that the received value matches with the value derived locally. This breaks interoperability with previous wpa_supplicant/hostapd versions.
Diffstat (limited to 'src/ap/wpa_auth_i.h')
1 files changed, 2 insertions, 0 deletions
diff --git a/src/ap/wpa_auth_i.h b/src/ap/wpa_auth_i.h
index 86df3a4..6d6ed54 100644
--- a/src/ap/wpa_auth_i.h
+++ b/src/ap/wpa_auth_i.h
@@ -116,6 +116,8 @@ struct wpa_state_machine {
* Request */
u8 r0kh_id[FT_R0KH_ID_MAX_LEN]; /* R0KH-ID from FT Auth Request */
size_t r0kh_id_len;
+ u8 sup_pmk_r1_name[WPA_PMK_NAME_LEN]; /* PMKR1Name from EAPOL-Key
+ * message 2/4 */
#endif /* CONFIG_IEEE80211R */