On Tue, Apr 11, 2017 at 05:22:36PM +0200, Jaap Keuter wrote: > When reducing the configuration for MACsec/MKA to the bare minimum, so > no EAP authentication, just MACsec/MKA SA use with preshared key/name, > the EAPOL engine is still needed to run the protocol for MKA. > Without any EAP authentication options the IEEE8021X_EAPOL option is not > set, resulting in a non-working Key Agreement Entity. > > Therefore the CONFIG_MACSEC block needs to move up and set the > IEEE8021X_EAPOL option. Thanks, applied. -- Jouni Malinen PGP id EFC895FA _______________________________________________ Hostap mailing list Hostap@xxxxxxxxxxxxxxxxxxx http://lists.infradead.org/mailman/listinfo/hostap