On Wed, Mar 08, 2017 at 03:32:52PM +0100, Mathy Vanhoef wrote: > On Wed, Mar 8, 2017 at 12:59 PM, Jouni Malinen <j@xxxxx> wrote: > > That is needed for WPA, but with WPA2 (= RSN), unencrypted EAPOL frames > > are not supposed to be accepted after TK has been configured. > > Interesting. Is it needed for some specific reason for WPA, or was it > just a requirement of the older WPA standard? It's been more than ten years from that, but if I remember correctly, number of early WPA implementations did not encrypt some of the EAPOL-Key frames (especially group key handshake) after the TK was configured. -- Jouni Malinen PGP id EFC895FA _______________________________________________ Hostap mailing list Hostap@xxxxxxxxxxxxxxxxxxx http://lists.infradead.org/mailman/listinfo/hostap