hostapd: fix 11r defaults when using SAE
authorJesus Fernandez Manzano <jesus.manzano@galgus.ai>
Mon, 22 Jan 2024 12:52:18 +0000 (13:52 +0100)
committerHauke Mehrtens <hauke@hauke-m.de>
Mon, 8 Jul 2024 20:27:11 +0000 (22:27 +0200)
When using WPA3-SAE or WPA2/WPA3 Personal Mixed, we can not use
ft_psk_generate_local because it will break FT for SAE. Instead
use the r0kh and r1kh configuration approach.

Signed-off-by: Jesus Fernandez Manzano <jesus.manzano@galgus.ai>
(cherry picked from commit e2f6bfb833a1ba099e1dcf0e569e4ef11c31c391)
Fixes: https://github.com/openwrt/luci/issues/6930
Signed-off-by: Jo-Philipp Wich <jo@mein.io>
Link: https://github.com/openwrt/openwrt/pull/15899
Signed-off-by: Hauke Mehrtens <hauke@hauke-m.de>
package/network/services/hostapd/files/hostapd.sh

index 2fcc46248dc3d268baeac6e34e8929ecc3e9f2fe..03f34f8b218cdee7f7dbfb76e16128bfbefd6fcb 100644 (file)
@@ -858,7 +858,7 @@ hostapd_set_bss_options() {
                        set_default reassociation_deadline 1000
 
                        case "$auth_type" in
-                               psk|sae|psk-sae)
+                               psk)
                                        set_default ft_psk_generate_local 1
                                ;;
                                *)