aboutsummaryrefslogtreecommitdiffstats
path: root/hostapd/hostapd.wpa_psk
diff options
context:
space:
mode:
authorTomasz Jankowski <tomasz.jankowski@plume.com>2020-02-10 11:49:33 (GMT)
committerJouni Malinen <j@w1.fi>2020-02-15 15:28:00 (GMT)
commitfde8e7946304569292c5d520d76371291cc4f88c (patch)
tree6ef6fa5fdab9c7969d59e17ece33762866a10bba /hostapd/hostapd.wpa_psk
parentb1977a652dffa4e4f6f01e93dac59f8f29f17b14 (diff)
downloadhostap-fde8e7946304569292c5d520d76371291cc4f88c.zip
hostap-fde8e7946304569292c5d520d76371291cc4f88c.tar.gz
hostap-fde8e7946304569292c5d520d76371291cc4f88c.tar.bz2
WPS: Make it possible to use PSKs loaded from the PSK file
By default, when configuration file set wpa_psk_file, hostapd generated a random PSK for each Enrollee provisioned using WPS and appended that PSK to wpa_psk_file. Changes that behavior by adding a new step. WPS will first try to use a PSK from wpa_psk_file. It will only try PSKs with wps=1 tag. Additionally it'll try to match enrollee's MAC address (if provided). If it fails to find an appropriate PSK, it falls back to generating a new PSK. Signed-off-by: Tomasz Jankowski <tomasz.jankowski@plume.com>
Diffstat (limited to 'hostapd/hostapd.wpa_psk')
-rw-r--r--hostapd/hostapd.wpa_psk6
1 files changed, 6 insertions, 0 deletions
diff --git a/hostapd/hostapd.wpa_psk b/hostapd/hostapd.wpa_psk
index 166e59e..2ce5ff2 100644
--- a/hostapd/hostapd.wpa_psk
+++ b/hostapd/hostapd.wpa_psk
@@ -7,9 +7,15 @@
# keyid=<keyid_string>
# An optional VLAN ID can be specified by prefixing the line with
# vlanid=<VLAN ID>.
+# An optional WPS tag can be added by prefixing the line with
+# wps=<0/1> (default: 0). Any matching entry with that tag will be used when
+# generating a PSK for a WPS Enrollee instead of generating a new random
+# per-Enrollee PSK.
00:00:00:00:00:00 secret passphrase
00:11:22:33:44:55 another passphrase
00:22:33:44:55:66 0123456789abcdef0123456789abcdef0123456789abcdef0123456789abcdef
keyid=example_id 00:11:22:33:44:77 passphrase with keyid
vlanid=3 00:00:00:00:00:00 passphrase with vlanid
+wps=1 00:00:00:00:00:00 passphrase for WPS
+wps=1 11:22:33:44:55:00 dev-specific passphrase for WPS
00:00:00:00:00:00 another passphrase for all STAs