Fast BSS transition crashes hostapd 2.7-devel

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



HI,

I am working with hostapd version "v2.7-devel".

While doing fast BSS transition of iphone SE, using "FT_over_DS",
target AP hostapd crashes.

Connect AP hostapd is running properly.

Logs of connect AP and Target AP are attached.

>From debugging, it appears target AP couldn't send "sequence request".
This sequence request is relatively new exchange compared to 2.1v.

---- on target AP ---
wpa_ft_pull_pmk_r1()
  wpa_ft_rrb_seq_req()
    wpa_ft_rrb_build(key, key_len, NULL, NULL, seq_req_auth, NULL,
      if (wpa_ft_rrb_lin(tlvs_enc0, tlvs_enc1, vlan, ----- all these
pointers are NULL. This will throw an error in generating Seq_number
request.

Can someone help here ?
---------------- target AP (07)------------
WPS UPnP: Ignored M-SEARCH (no ST match)
WPS UPnP: Ignored M-SEARCH (no ST match)
l2_packet_receive: src=FF:FF:FF:FF:E0:C7 len=139
__madwifi_hostapd_recv_raw_pkt: len=139
wifi0: Event RX_PROBE_REQ (22) received
wifi0: PROBE-REQ E0:C7:67:74:2A:49 'ssid_11k'
CTRL_IFACE monitor send /tmp/wpa_ctrl_318-37\x00
l2_packet_receive: src=00:26:86:F0:53:AD len=181
FT: RRB received packet 00:26:86:F0:53:AD -> 00:26:86:F0:CF:07
FT: RRB received frame from remote AP 00:26:86:F0:53:AD
FT: RRB frame - frame_type=1 packet_type=0 action_length=157 ap_address=00:26:86:F0:53:AD
FT: RRB Action Frame: action=1 sta_addr=E0:C7:67:74:2A:49 target_ap_addr=00:26:86:F0:CF:07
FT: FT Packet Type - Request
madwifi_hostapd_add_sta_node: auth_alg=2
  New STA
ap_sta_add: register ap_handle_timer timeout for E0:C7:67:74:2A:49 (300 seconds - ap_max_inactivity)
FT: Received authentication frame IEs - hexdump(len=143): 30 26 01 00 00 0f ac 04 01 00 00 0f ac 04 01 00 00 0f ac 04 0c 00 01 00 1b 78 42 18 fd 66 96 cf 1a 55 31 c7 99 eb 3d 6e 36 03 aa aa 01 37 60 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 64 b2 71 35 c4 d7 d9 44 9a ef 28 84 a2 10 88 40 42 01 f7 f8 bf c0 00 ff fc 01 e0 0a 80 28 01 46 03 0c 30 30 32 36 38 36 46 30 35 33 41 44
FT: RSNE - hexdump(len=38): 01 00 00 0f ac 04 01 00 00 0f ac 04 01 00 00 0f ac 04 0c 00 01 00 1b 78 42 18 fd 66 96 cf 1a 55 31 c7 99 eb 3d 6e
FT: MDE - hexdump(len=3): aa aa 01
FT: FTE - hexdump(len=96): 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 64 b2 71 35 c4 d7 d9 44 9a ef 28 84 a2 10 88 40 42 01 f7 f8 bf c0 00 ff fc 01 e0 0a 80 28 01 46 03 0c 30 30 32 36 38 36 46 30 35 33 41 44
FT: FTE-MIC Control - hexdump(len=2): 00 00
FT: FTE-MIC - hexdump(len=16): 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
FT: FTE-ANonce - hexdump(len=32): 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
FT: FTE-SNonce - hexdump(len=32): 64 b2 71 35 c4 d7 d9 44 9a ef 28 84 a2 10 88 40 42 01 f7 f8 bf c0 00 ff fc 01 e0 0a 80 28 01 46
FT: Parse FTE subelements - hexdump(len=14): 03 0c 30 30 32 36 38 36 46 30 35 33 41 44
FT: STA R0KH-ID - hexdump(len=12): 30 30 32 36 38 36 46 30 35 33 41 44
FT: Requested PMKR0Name - hexdump(len=16): 1b 78 42 18 fd 66 96 cf 1a 55 31 c7 99 eb 3d 6e
FT: Derived requested PMKR1Name - hexdump(len=16): 2a c7 cc 9f ce 6a e3 33 96 a4 1b a6 e5 e9 73 35
FT: No PMK-R1 available in local cache for the requested PMKR1Name
FT: Send PMK-R1 pull request to remote R0KH address 00:26:86:F0:53:AD
FT: Failed to allocate plaintext
FT: Failed to build RRB-OUI message
FT: Failed to send sequence number request
FT(RRB): plaintext message - hexdump(len=30): [REMOVED]
FT(RRB): encrypt using key - hexdump(len=32): [REMOVED]
FT: RRB-OUI type 1 send to 00:26:86:F0:53:AD
FT: No immediate response available - wait for pull response
FT: Ignore extra data in end - hexdump(len=143): 30 26 01 00 00 0f ac 04 01 00 00 0f ac 04 01 00 00 0f ac 04 0c 00 01 00 1b 78 42 18 fd 66 96 cf 1a 55 31 c7 99 eb 3d 6e 36 03 aa aa 01 37 60 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 64 b2 71 35 c4 d7 d9 44 9a ef 28 84 a2 10 88 40 42 01 f7 f8 bf c0 00 ff fc 01 e0 0a 80 28 01 46 03 0c 30 30 32 36 38 36 46 30 35 33 41 44
l2_packet_receive: src=86:F0:CF:07:E0:C7 len=207
__madwifi_hostapd_recv_raw_pkt: len=207
__madwifi_hostapd_recv_mgmt: type=0, subtype=11, len=207
__madwifi_hostapd_recv_mgmt - hexdump(len=207): b0 00 3c 00 00 26 86 f0 cf 07 e0 c7 67 74 2a 49 00 26 86 f0 cf 07 b0 e2 02 00 01 00 00 00 30 26 01 00 00 0f ac 04 01 00 00 0f ac 04 01 00 00 0f ac 04 0c 00 01 00 1b 78 42 18 fd 66 96 cf 1a 55 31 c7 99 eb 3d 6e 36 03 aa aa 01 37 60 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 65 b2 71 35 c4 d7 d9 44 9a ef 28 84 a2 10 88 40 42 01 f7 f8 bf c0 00 ff fc 01 e0 0a 80 28 01 46 03 0c 30 30 32 36 38 36 46 30 35 33 41 44 7f 08 00 00 08 00 00 00 00 40 dd 0b 00 17 f2 0a 00 01 04 00 00 00 00 dd 09 00 10 18 02 01 00 10 00 00
__madwifi_hostapd_recv_mgmt: RX MGMT subtype 11
wifi0: Event RX_MGMT (18) received
mgmt::auth
authentication: STA=E0:C7:67:74:2A:49 auth_alg=2 auth_transaction=1 status_code=0 wep=0 seq_ctrl=0xe2b0
FT: Received authentication frame: STA=E0:C7:67:74:2A:49 BSSID=00:26:86:F0:CF:07 transaction=1
FT: Received authentication frame IEs - hexdump(len=177): 30 26 01 00 00 0f ac 04 01 00 00 0f ac 04 01 00 00 0f ac 04 0c 00 01 00 1b 78 42 18 fd 66 96 cf 1a 55 31 c7 99 eb 3d 6e 36 03 aa aa 01 37 60 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 65 b2 71 35 c4 d7 d9 44 9a ef 28 84 a2 10 88 40 42 01 f7 f8 bf c0 00 ff fc 01 e0 0a 80 28 01 46 03 0c 30 30 32 36 38 36 46 30 35 33 41 44 7f 08 00 00 08 00 00 00 00 40 dd 0b 00 17 f2 0a 00 01 04 00 00 00 00 dd 09 00 10 18 02 01 00 10 00 00
FT: RSNE - hexdump(len=38): 01 00 00 0f ac 04 01 00 00 0f ac 04 01 00 00 0f ac 04 0c 00 01 00 1b 78 42 18 fd 66 96 cf 1a 55 31 c7 99 eb 3d 6e
FT: MDE - hexdump(len=3): aa aa 01
FT: FTE - hexdump(len=96): 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 65 b2 71 35 c4 d7 d9 44 9a ef 28 84 a2 10 88 40 42 01 f7 f8 bf c0 00 ff fc 01 e0 0a 80 28 01 46 03 0c 30 30 32 36 38 36 46 30 35 33 41 44
FT: FTE-MIC Control - hexdump(len=2): 00 00
FT: FTE-MIC - hexdump(len=16): 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
FT: FTE-ANonce - hexdump(len=32): 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
FT: FTE-SNonce - hexdump(len=32): 65 b2 71 35 c4 d7 d9 44 9a ef 28 84 a2 10 88 40 42 01 f7 f8 bf c0 00 ff fc 01 e0 0a 80 28 01 46
FT: Parse FTE subelements - hexdump(len=14): 03 0c 30 30 32 36 38 36 46 30 35 33 41 44
FT: STA R0KH-ID - hexdump(len=12): 30 30 32 36 38 36 46 30 35 33 41 44
FT: Requested PMKR0Name - hexdump(len=16): 1b 78 42 18 fd 66 96 cf 1a 55 31 c7 99 eb 3d 6e
FT: Derived requested PMKR1Name - hexdump(len=16): 2a c7 cc 9f ce 6a e3 33 96 a4 1b a6 e5 e9 73 35
FT: No PMK-R1 available in local cache for the requested PMKR1Name
FT: Send PMK-R1 pull request to remote R0KH address 00:26:86:F0:53:AD
FT: Failed to allocate plaintext
FT: Failed to build RRB-OUI message
FT: Failed to send sequence number request
FT(RRB): plaintext message - hexdump(len=30): [REMOVED]
FT(RRB): encrypt using key - hexdump(len=32): [REMOVED]
FT: RRB-OUI type 1 send to 00:26:86:F0:53:AD
FT: Callback postponed until response is available
Custom wireless event: 'ACL:[WLAN access allowed] from MAC: e0:c7:67:74:2a:49'
l2_packet_receive: src=00:26:86:F0:53:AD len=181
FT: RRB received packet 00:26:86:F0:53:AD -> 00:26:86:F0:CF:07
FT: RRB received frame from remote AP 00:26:86:F0:53:AD
FT: RRB frame - frame_type=1 packet_type=0 action_length=157 ap_address=00:26:86:F0:53:AD
FT: RRB Action Frame: action=1 sta_addr=E0:C7:67:74:2A:49 target_ap_addr=00:26:86:F0:CF:07
FT: FT Packet Type - Request
madwifi_hostapd_add_sta_node: auth_alg=2
FT: Received authentication frame IEs - hexdump(len=143): 30 26 01 00 00 0f ac 04 01 00 00 0f ac 04 01 00 00 0f ac 04 0c 00 01 00 1b 78 42 18 fd 66 96 cf 1a 55 31 c7 99 eb 3d 6e 36 03 aa aa 01 37 60 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 66 b2 71 35 c4 d7 d9 44 9a ef 28 84 a2 10 88 40 42 01 f7 f8 bf c0 00 ff fc 01 e0 0a 80 28 01 46 03 0c 30 30 32 36 38 36 46 30 35 33 41 44
FT: RSNE - hexdump(len=38): 01 00 00 0f ac 04 01 00 00 0f ac 04 01 00 00 0f ac 04 0c 00 01 00 1b 78 42 18 fd 66 96 cf 1a 55 31 c7 99 eb 3d 6e
FT: MDE - hexdump(len=3): aa aa 01
FT: FTE - hexdump(len=96): 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 66 b2 71 35 c4 d7 d9 44 9a ef 28 84 a2 10 88 40 42 01 f7 f8 bf c0 00 ff fc 01 e0 0a 80 28 01 46 03 0c 30 30 32 36 38 36 46 30 35 33 41 44
FT: FTE-MIC Control - hexdump(len=2): 00 00
FT: FTE-MIC - hexdump(len=16): 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
FT: FTE-ANonce - hexdump(len=32): 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
FT: FTE-SNonce - hexdump(len=32): 66 b2 71 35 c4 d7 d9 44 9a ef 28 84 a2 10 88 40 42 01 f7 f8 bf c0 00 ff fc 01 e0 0a 80 28 01 46
FT: Parse FTE subelements - hexdump(len=14): 03 0c 30 30 32 36 38 36 46 30 35 33 41 44
FT: STA R0KH-ID - hexdump(len=12): 30 30 32 36 38 36 46 30 35 33 41 44
FT: Requested PMKR0Name - hexdump(len=16): 1b 78 42 18 fd 66 96 cf 1a 55 31 c7 99 eb 3d 6e
FT: Derived requested PMKR1Name - hexdump(len=16): 2a c7 cc 9f ce 6a e3 33 96 a4 1b a6 e5 e9 73 35
FT: No PMK-R1 available in local cache for the requested PMKR1Name
FT: Send PMK-R1 pull request to remote R0KH address 00:26:86:F0:53:AD
FT: Failed to allocate plaintext
FT: Failed to build RRB-OUI message
FT: Failed to send sequence number request
FT(RRB): plaintext message - hexdump(len=30): [REMOVED]
FT(RRB): encrypt using key - hexdump(len=32): [REMOVED]
FT: RRB-OUI type 1 send to 00:26:86:F0:53:AD
FT: No immediate response available - wait for pull response
FT: Ignore extra data in end - hexdump(len=143): 30 26 01 00 00 0f ac 04 01 00 00 0f ac 04 01 00 00 0f ac 04 0c 00 01 00 1b 78 42 18 fd 66 96 cf 1a 55 31 c7 99 eb 3d 6e 36 03 aa aa 01 37 60 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 66 b2 71 35 c4 d7 d9 44 9a ef 28 84 a2 10 88 40 42 01 f7 f8 bf c0 00 ff fc 01 e0 0a 80 28 01 46 03 0c 30 30 32 36 38 36 46 30 35 33 41 44
l2_packet_receive: src=86:F0:CF:07:E0:C7 len=207
__madwifi_hostapd_recv_raw_pkt: len=207
__madwifi_hostapd_recv_mgmt: type=0, subtype=11, len=207
__madwifi_hostapd_recv_mgmt - hexdump(len=207): b0 00 3c 00 00 26 86 f0 cf 07 e0 c7 67 74 2a 49 00 26 86 f0 cf 07 d0 e2 02 00 01 00 00 00 30 26 01 00 00 0f ac 04 01 00 00 0f ac 04 01 00 00 0f ac 04 0c 00 01 00 1b 78 42 18 fd 66 96 cf 1a 55 31 c7 99 eb 3d 6e 36 03 aa aa 01 37 60 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 67 b2 71 35 c4 d7 d9 44 9a ef 28 84 a2 10 88 40 42 01 f7 f8 bf c0 00 ff fc 01 e0 0a 80 28 01 46 03 0c 30 30 32 36 38 36 46 30 35 33 41 44 7f 08 00 00 08 00 00 00 00 40 dd 0b 00 17 f2 0a 00 01 04 00 00 00 00 dd 09 00 10 18 02 01 00 10 00 00
__madwifi_hostapd_recv_mgmt: RX MGMT subtype 11
wifi0: Event RX_MGMT (18) received
mgmt::auth
authentication: STA=E0:C7:67:74:2A:49 auth_alg=2 auth_transaction=1 status_code=0 wep=0 seq_ctrl=0xe2d0
FT: Received authentication frame: STA=E0:C7:67:74:2A:49 BSSID=00:26:86:F0:CF:07 transaction=1
FT: Received authentication frame IEs - hexdump(len=177): 30 26 01 00 00 0f ac 04 01 00 00 0f ac 04 01 00 00 0f ac 04 0c 00 01 00 1b 78 42 18 fd 66 96 cf 1a 55 31 c7 99 eb 3d 6e 36 03 aa aa 01 37 60 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 67 b2 71 35 c4 d7 d9 44 9a ef 28 84 a2 10 88 40 42 01 f7 f8 bf c0 00 ff fc 01 e0 0a 80 28 01 46 03 0c 30 30 32 36 38 36 46 30 35 33 41 44 7f 08 00 00 08 00 00 00 00 40 dd 0b 00 17 f2 0a 00 01 04 00 00 00 00 dd 09 00 10 18 02 01 00 10 00 00
FT: RSNE - hexdump(len=38): 01 00 00 0f ac 04 01 00 00 0f ac 04 01 00 00 0f ac 04 0c 00 01 00 1b 78 42 18 fd 66 96 cf 1a 55 31 c7 99 eb 3d 6e
FT: MDE - hexdump(len=3): aa aa 01
FT: FTE - hexdump(len=96): 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 67 b2 71 35 c4 d7 d9 44 9a ef 28 84 a2 10 88 40 42 01 f7 f8 bf c0 00 ff fc 01 e0 0a 80 28 01 46 03 0c 30 30 32 36 38 36 46 30 35 33 41 44
FT: FTE-MIC Control - hexdump(len=2): 00 00
FT: FTE-MIC - hexdump(len=16): 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
FT: FTE-ANonce - hexdump(len=32): 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
FT: FTE-SNonce - hexdump(len=32): 67 b2 71 35 c4 d7 d9 44 9a ef 28 84 a2 10 88 40 42 01 f7 f8 bf c0 00 ff fc 01 e0 0a 80 28 01 46
FT: Parse FTE subelements - hexdump(len=14): 03 0c 30 30 32 36 38 36 46 30 35 33 41 44
FT: STA R0KH-ID - hexdump(len=12): 30 30 32 36 38 36 46 30 35 33 41 44
FT: Requested PMKR0Name - hexdump(len=16): 1b 78 42 18 fd 66 96 cf 1a 55 31 c7 99 eb 3d 6e
FT: Derived requested PMKR1Name - hexdump(len=16): 2a c7 cc 9f ce 6a e3 33 96 a4 1b a6 e5 e9 73 35
FT: No PMK-R1 available in local cache for the requested PMKR1Name
FT: Send PMK-R1 pull request to remote R0KH address 00:26:86:F0:53:AD
FT: Failed to allocate plaintext
FT: Failed to build RRB-OUI message
FT: Failed to send sequence number request
FT(RRB): plaintext message - hexdump(len=30): [REMOVED]
FT(RRB): encrypt using key - hexdump(len=32): [REMOVED]
FT: RRB-OUI type 1 send to 00:26:86:F0:53:AD
FT: Callback postponed until response is available
Custom wireless event: 'ACL:[WLAN access allowed] from MAC: e0:c7:67:74:2a:49'
FT: Timeout pending pull request for E0:C7:67:74:2A:49
FT: Received authentication frame IEs - hexdump(len=177): 30 26 01 00 00 0f ac 04 01 00 00 0f ac 04 01 00 00 0f ac 04 0c 00 01 00 1b 78 42 18 fd 66 96 cf 1a 55 31 c7 99 eb 3d 6e 36 03 aa aa 01 37 60 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 67 b2 71 35 c4 d7 d9 44 9a ef 28 84 a2 10 88 40 42 01 f7 f8 bf c0 00 ff fc 01 e0 0a 80 28 01 46 03 0c 30 30 32 36 38 36 46 30 35 33 41 44 7f 08 00 00 08 00 00 00 00 40 dd 0b 00 17 f2 0a 00 01 04 00 00 00 00 dd 09 00 10 18 02 01 00 10 00 00
FT: RSNE - hexdump(len=38): 01 00 00 0f ac 04 01 00 00 0f ac 04 01 00 00 0f ac 04 0c 00 01 00 1b 78 42 18 fd 66 96 cf 1a 55 31 c7 99 eb 3d 6e
FT: MDE - hexdump(len=3): aa aa 01
FT: FTE - hexdump(len=96): 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 67 b2 71 35 c4 d7 d9 44 9a ef 28 84 a2 10 88 40 42 01 f7 f8 bf c0 00 ff fc 01 e0 0a 80 28 01 46 03 0c 30 30 32 36 38 36 46 30 35 33 41 44
FT: FTE-MIC Control - hexdump(len=2): 00 00
FT: FTE-MIC - hexdump(len=16): 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
FT: FTE-ANonce - hexdump(len=32): 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
FT: FTE-SNonce - hexdump(len=32): 67 b2 71 35 c4 d7 d9 44 9a ef 28 84 a2 10 88 40 42 01 f7 f8 bf c0 00 ff fc 01 e0 0a 80 28 01 46
FT: Parse FTE subelements - hexdump(len=14): 03 0c 30 30 32 36 38 36 46 30 35 33 41 44
FT: STA R0KH-ID - hexdump(len=12): 30 30 32 36 38 36 46 30 35 33 41 44
FT: Requested PMKR0Name - hexdump(len=16): 1b 78 42 18 fd 66 96 cf 1a 55 31 c7 99 eb 3d 6e
FT: Derived requested PMKR1Name - hexdump(len=16): 2a c7 cc 9f ce 6a e3 33 96 a4 1b a6 e5 e9 73 35
FT: No PMK-R1 available in local cache for the requested PMKR1Name
FT: Send PMK-R1 pull request to remote R0KH address 00:26:86:F0:53:AD
FT: Failed to allocate plaintext
FT: Failed to build RRB-OUI message
FT: Failed to send sequence number request
FT(RRB): plaintext message - hexdump(len=30): [REMOVED]
FT(RRB): encrypt using key - hexdump(len=32): [REMOVED]
FT: RRB-OUI type 1 send to 00:26:86:F0:53:AD
FT: Callback postponed until response is available
FT: Timeout pending pull request for E0:C7:67:74:2A:49
FT: Received authentication frame IEs - hexdump(len=177): 30 26 01 00 00 0f ac 04 01 00 00 0f ac 04 01 00 00 0f ac 04 0c 00 01 00 1b 78 42 18 fd 66 96 cf 1a 55 31 c7 99 eb 3d 6e 36 03 aa aa 01 37 60 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 67 b2 71 35 c4 d7 d9 44 9a ef 28 84 a2 10 88 40 42 01 f7 f8 bf c0 00 ff fc 01 e0 0a 80 28 01 46 03 0c 30 30 32 36 38 36 46 30 35 33 41 44 7f 08 00 00 08 00 00 00 00 40 dd 0b 00 17 f2 0a 00 01 04 00 00 00 00 dd 09 00 10 18 02 01 00 10 00 00
FT: RSNE - hexdump(len=38): 01 00 00 0f ac 04 01 00 00 0f ac 04 01 00 00 0f ac 04 0c 00 01 00 1b 78 42 18 fd 66 96 cf 1a 55 31 c7 99 eb 3d 6e
FT: MDE - hexdump(len=3): aa aa 01
FT: FTE - hexdump(len=96): 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 67 b2 71 35 c4 d7 d9 44 9a ef 28 84 a2 10 88 40 42 01 f7 f8 bf c0 00 ff fc 01 e0 0a 80 28 01 46 03 0c 30 30 32 36 38 36 46 30 35 33 41 44
FT: FTE-MIC Control - hexdump(len=2): 00 00
FT: FTE-MIC - hexdump(len=16): 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
FT: FTE-ANonce - hexdump(len=32): 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
FT: FTE-SNonce - hexdump(len=32): 67 b2 71 35 c4 d7 d9 44 9a ef 28 84 a2 10 88 40 42 01 f7 f8 bf c0 00 ff fc 01 e0 0a 80 28 01 46
FT: Parse FTE subelements - hexdump(len=14): 03 0c 30 30 32 36 38 36 46 30 35 33 41 44
FT: STA R0KH-ID - hexdump(len=12): 30 30 32 36 38 36 46 30 35 33 41 44
FT: Requested PMKR0Name - hexdump(len=16): 1b 78 42 18 fd 66 96 cf 1a 55 31 c7 99 eb 3d 6e
FT: Derived requested PMKR1Name - hexdump(len=16): 2a c7 cc 9f ce 6a e3 33 96 a4 1b a6 e5 e9 73 35
FT: No PMK-R1 available in local cache for the requested PMKR1Name
FT: Send PMK-R1 pull request to remote R0KH address 00:26:86:F0:53:AD
FT: Failed to allocate plaintext
FT: Failed to build RRB-OUI message
FT: Failed to send sequence number request
FT(RRB): plaintext message - hexdump(len=30): [REMOVED]
FT(RRB): encrypt using key - hexdump(len=32): [REMOVED]
FT: RRB-OUI type 1 send to 00:26:86:F0:53:AD
FT: Callback postponed until response is available
l2_packet_receive: src=FF:FF:FF:FF:E0:C7 len=131
__madwifi_hostapd_recv_raw_pkt: len=131
wifi0: Event RX_PROBE_REQ (22) received
wifi0: PROBE-REQ E0:C7:67:74:2A:49 (broadcast)
CTRL_IFACE monitor send /tmp/wpa_ctrl_318-37\x00
FT: Timeout pending pull request for E0:C7:67:74:2A:49
FT: Received authentication frame IEs - hexdump(len=177): 30 26 01 00 00 0f ac 04 01 00 00 0f ac 04 01 00 00 0f ac 04 0c 00 01 00 1b 78 42 18 fd 66 96 cf 1a 55 31 c7 99 eb 3d 6e 36 03 aa aa 01 37 60 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 67 b2 71 35 c4 d7 d9 44 9a ef 28 84 a2 10 88 40 42 01 f7 f8 bf c0 00 ff fc 01 e0 0a 80 28 01 46 03 0c 30 30 32 36 38 36 46 30 35 33 41 44 7f 08 00 00 08 00 00 00 00 40 dd 0b 00 17 f2 0a 00 01 04 00 00 00 00 dd 09 00 10 18 02 01 00 10 00 00
FT: RSNE - hexdump(len=38): 01 00 00 0f ac 04 01 00 00 0f ac 04 01 00 00 0f ac 04 0c 00 01 00 1b 78 42 18 fd 66 96 cf 1a 55 31 c7 99 eb 3d 6e
FT: MDE - hexdump(len=3): aa aa 01
FT: FTE - hexdump(len=96): 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 67 b2 71 35 c4 d7 d9 44 9a ef 28 84 a2 10 88 40 42 01 f7 f8 bf c0 00 ff fc 01 e0 0a 80 28 01 46 03 0c 30 30 32 36 38 36 46 30 35 33 41 44
FT: FTE-MIC Control - hexdump(len=2): 00 00
FT: FTE-MIC - hexdump(len=16): 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
FT: FTE-ANonce - hexdump(len=32): 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
FT: FTE-SNonce - hexdump(len=32): 67 b2 71 35 c4 d7 d9 44 9a ef 28 84 a2 10 88 40 42 01 f7 f8 bf c0 00 ff fc 01 e0 0a 80 28 01 46
FT: Parse FTE subelements - hexdump(len=14): 03 0c 30 30 32 36 38 36 46 30 35 33 41 44
FT: STA R0KH-ID - hexdump(len=12): 30 30 32 36 38 36 46 30 35 33 41 44
FT: Requested PMKR0Name - hexdump(len=16): 1b 78 42 18 fd 66 96 cf 1a 55 31 c7 99 eb 3d 6e
FT: Derived requested PMKR1Name - hexdump(len=16): 2a c7 cc 9f ce 6a e3 33 96 a4 1b a6 e5 e9 73 35
FT: No PMK-R1 available in local cache for the requested PMKR1Name
FT: Send PMK-R1 pull request to remote R0KH address 00:26:86:F0:53:AD
FT: Failed to allocate plaintext
FT: Failed to build RRB-OUI message
FT: Failed to send sequence number request
FT(RRB): plaintext message - hexdump(len=30): [REMOVED]
FT(RRB): encrypt using key - hexdump(len=32): [REMOVED]
FT: RRB-OUI type 1 send to 00:26:86:F0:53:AD
FT: Callback postponed until response is available
FT: Timeout pending pull request for E0:C7:67:74:2A:49
FT: Received authentication frame IEs - hexdump(len=177): 30 26 01 00 00 0f ac 04 01 00 00 0f ac 04 01 00 00 0f ac 04 0c 00 01 00 1b 78 42 18 fd 66 96 cf 1a 55 31 c7 99 eb 3d 6e 36 03 aa aa 01 37 60 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 67 b2 71 35 c4 d7 d9 44 9a ef 28 84 a2 10 88 40 42 01 f7 f8 bf c0 00 ff fc 01 e0 0a 80 28 01 46 03 0c 30 30 32 36 38 36 46 30 35 33 41 44 7f 08 00 00 08 00 00 00 00 40 dd 0b 00 17 f2 0a 00 01 04 00 00 00 00 dd 09 00 10 18 02 01 00 10 00 00
FT: RSNE - hexdump(len=38): 01 00 00 0f ac 04 01 00 00 0f ac 04 01 00 00 0f ac 04 0c 00 01 00 1b 78 42 18 fd 66 96 cf 1a 55 31 c7 99 eb 3d 6e
FT: MDE - hexdump(len=3): aa aa 01
FT: FTE - hexdump(len=96): 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 67 b2 71 35 c4 d7 d9 44 9a ef 28 84 a2 10 88 40 42 01 f7 f8 bf c0 00 ff fc 01 e0 0a 80 28 01 46 03 0c 30 30 32 36 38 36 46 30 35 33 41 44
FT: FTE-MIC Control - hexdump(len=2): 00 00
FT: FTE-MIC - hexdump(len=16): 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
FT: FTE-ANonce - hexdump(len=32): 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
FT: FTE-SNonce - hexdump(len=32): 67 b2 71 35 c4 d7 d9 44 9a ef 28 84 a2 10 88 40 42 01 f7 f8 bf c0 00 ff fc 01 e0 0a 80 28 01 46
FT: Parse FTE subelements - hexdump(len=14): 03 0c 30 30 32 36 38 36 46 30 35 33 41 44
FT: STA R0KH-ID - hexdump(len=12): 30 30 32 36 38 36 46 30 35 33 41 44
FT: Requested PMKR0Name - hexdump(len=16): 1b 78 42 18 fd 66 96 cf 1a 55 31 c7 99 eb 3d 6e
FT: Derived requested PMKR1Name - hexdump(len=16): 2a c7 cc 9f ce 6a e3 33 96 a4 1b a6 e5 e9 73 35
FT: No PMK-R1 available in local cache for the requested PMKR1Name
FT: Did not have matching PMK-R1 and either unknown or blocked R0KH-ID or NAK from R0KH
FT: Postponed auth callback result for E0:C7:67:74:2A:49 - status 53
authentication reply: STA=E0:C7:67:74:2A:49 auth_alg=2 auth_transaction=2 resp=53 (IE len=0) (dbg=auth-ft-finish)
madwifi_send_mlme: len=30
madwifi_send_mlme - hexdump(len=30): b0 00 00 00 e0 c7 67 74 2a 49 00 26 86 f0 cf 07 00 26 86 f0 cf 07 00 00 02 00 02 00 35 00
__madwifi_send_auth_frame: data_len=30
Custom wireless event: 'Dot11Msg:Client failed to authenticate [e0:c7:67:74:2a:49]'
[  587.820000] wifi0: e0:c7:67:74:2a:49 disassociated, tot=0/0
[  627.900000] wifi0: e0:c7:67:74:2a:49 disassociated, tot=0/0

[1] + Segmentation fault (core dumped) /usr/sbin/hostapd /mnt/jffs2/hostapd.conf -d
---- end of target AP -----------------

------------------ current AP(AD) --------------
wifi0: Event RX_PROBE_REQ (22) received
wifi0: PROBE-REQ E0:C7:67:74:2A:49 ' ssid_11k'
CTRL_IFACE monitor send /tmp/wpa_ctrl_318-13\x00
l2_packet_receive: src=86:F0:53:AD:E0:C7 len=181
__madwifi_hostapd_recv_raw_pkt: len=181
__madwifi_hostapd_recv_action: Received action frame - category 6

wifi0: Event RX_MGMT (18) received
mgmt::action
FT: Received FT Action frame (STA=E0:C7:67:74:2A:49 Target AP=00:26:86:F0:CF:07 Action=1)
FT: RRB send to 00:26:86:F0:CF:07
[  780.205000] FWT:l2_packet_receive: src=00:26:86:F0:CF:07 len=130
FT: RRB receiv[ed packet 00:26:086:F0:CF:07 -> 000:26:86:F0:53:AD:
FT: RRB-OUI re2ceived frame fro6m remote AP 00:2:6:86:F0:CF:07
:8T: RRB-OUI frame6 - oui_suffix=1
FT: Received PMfK-R1 pull
FT: R00KH-ID - hexdump:(len=12): 30 30 c32 36 38 36 46 3f0 35 33 41 44
F:T: R1KH-ID=00:260:86:F0:CF:07
FT7: nonce - hexdum]p(len=16): 29 6e  34 bd d5 b6 bb a86 ea c4 38 33 3de 6d 49 8f
FT: dsequence number  - hexdump(len=12e): 0f 84 be a1 3n2 1f d1 a7 2e 02t 00 00
FT: Possribly invalid seqyuence number in ,pull request fro m 00:26:86:F0:CFp:07
FT(RRB): deocrypt using key r- hexdump(len=32t): [REMOVED]
FT:(RRB): Failed toe decrypt
mac0 node:0 index:160 4addr:0 entries:4
l2_packet_receive: src=00:26:86:F0:CF:07 len=130
FT: RRB received packet 00:26:86:F0:CF:07 -> 00:26:86:F0:53:AD
FT: RRB-OUI received frame from remote AP 00:26:86:F0:CF:07
FT: RRB-OUI frame - oui_suffix=1
FT: Received PMK-R1 pull
FT: R0KH-ID - hexdump(len=12): 30 30 32 36 38 36 46 30 35 33 41 44
FT: R1KH-ID=00:26:86:F0:CF:07
FT: nonce - hexdump(len=16): 68 94 f3 e9 fd ad c3 6f ef 1a c1 1a 26 22 08 f1
FT: sequence number - hexdump(len=12): 0f 84 be a1 33 1f d1 a7 2e 02 00 00
FT: Possibly invalid sequence number in pull request from 00:26:86:F0:CF:07
FT(RRB): decrypt using key - hexdump(len=32): [REMOVED]
FT(RRB): Failed to decrypt
l2_packet_receive: src=86:F0:53:AD:E0:C7 len=181
__madwifi_hostapd_recv_raw_pkt: len=181
__madwifi_hostapd_recv_action: Received action frame - category 6

wifi0: Event RX_MGMT (18) received
mgmt::action
FT: Received FT Action frame (STA=E0:C7:67:74:2A:49 Target AP=00:26:86:F0:CF:07 Action=1)
FT: RRB send to 00:26:86:F0:CF:07
l2_packet_receive: src=00:26:86:F0:CF:07 len=130
FT: RRB received packet 00:26:86:F0:CF:07 -> 00:26:86:F0:53:AD
FT: RRB-OUI received frame from remote AP 00:26:86:F0:CF:07
FT: RRB-OUI frame - oui_suffix=1
FT: Received PMK-R1 pull
FT: R0KH-ID - hexdump(len=12): 30 30 32 36 38 36 46 30 35 33 41 44
FT: R1KH-ID=00:26:86:F0:CF:07
FT: nonce - hexdump(len=16): 95 86 33 1c 70 f4 e5 ef 51 ec 51 45 d8 fd 5d af
FT: sequence number - hexdump(len=12): 0f 84 be a1 34 1f d1 a7 2f 02 00 00
FT: Possibly invalid sequence number in pull request from 00:26:86:F0:CF:07
FT(RRB): decrypt using key - hexdump(len=32): [REMOVED]
FT(RRB): Failed to decrypt
l2_packet_receive: src=00:26:86:F0:CF:07 len=130
FT: RRB received packet 00:26:86:F0:CF:07 -> 00:26:86:F0:53:AD
FT: RRB-OUI received frame from remote AP 00:26:86:F0:CF:07
FT: RRB-OUI frame - oui_suffix=1
FT: Received PMK-R1 pull
FT: R0KH-ID - hexdump(len=12): 30 30 32 36 38 36 46 30 35 33 41 44
FT: R1KH-ID=00:26:86:F0:CF:07
FT: nonce - hexdump(len=16): e9 0f 6c a6 dc 21 00 cb 8d af 3c 14 0d 5f 77 a0
FT: sequence number - hexdump(len=12): 0f 84 be a1 35 1f d1 a7 2f 02 00 00
FT: Possibly invalid sequence number in pull request from 00:26:86:F0:CF:07
FT(RRB): decrypt using key - hexdump(len=32): [REMOVED]
FT(RRB): Failed to decrypt
l2_packet_receive: src=00:26:86:F0:CF:07 len=130
FT: RRB received packet 00:26:86:F0:CF:07 -> 00:26:86:F0:53:AD
FT: RRB-OUI received frame from remote AP 00:26:86:F0:CF:07
FT: RRB-OUI frame - oui_suffix=1
FT: Received PMK-R1 pull
FT: R0KH-ID - hexdump(len=12): 30 30 32 36 38 36 46 30 35 33 41 44
FT: R1KH-ID=00:26:86:F0:CF:07
FT: nonce - hexdump(len=16): e9 0f 6c a6 dc 21 00 cb 8d af 3c 14 0d 5f 77 a0
FT: sequence number - hexdump(len=12): 0f 84 be a1 36 1f d1 a7 2f 02 00 00
FT: Possibly invalid sequence number in pull request from 00:26:86:F0:CF:07
FT(RRB): decrypt using key - hexdump(len=32): [REMOVED]
FT(RRB): Failed to decrypt
l2_packet_receive: src=00:26:86:F0:CF:07 len=130
FT: RRB received packet 00:26:86:F0:CF:07 -> 00:26:86:F0:53:AD
FT: RRB-OUI received frame from remote AP 00:26:86:F0:CF:07
FT: RRB-OUI frame - oui_suffix=1
FT: Received PMK-R1 pull
FT: R0KH-ID - hexdump(len=12): 30 30 32 36 38 36 46 30 35 33 41 44
FT: R1KH-ID=00:26:86:F0:CF:07
FT: nonce - hexdump(len=16): e9 0f 6c a6 dc 21 00 cb 8d af 3c 14 0d 5f 77 a0
FT: sequence number - hexdump(len=12): 0f 84 be a1 37 1f d1 a7 30 02 00 00
FT: Possibly invalid sequence number in pull request from 00:26:86:F0:CF:07
FT(RRB): decrypt using key - hexdump(len=32): [REMOVED]
FT(RRB): Failed to decrypt
l2_packet_receive: src=FF:FF:FF:FF:E0:C7 len=131
__madwifi_hostapd_recv_raw_pkt: len=131
wifi0: Event RX_PROBE_REQ (22) received
wifi0: PROBE-REQ E0:C7:67:74:2A:49 (broadcast)
CTRL_IFACE monitor send /tmp/wpa_ctrl_318-13\x00
l2_packet_receive: src=FF:FF:FF:FF:E0:C7 len=131
__madwifi_hostapd_recv_raw_pkt: len=131
wifi0: Event RX_PROBE_REQ (22) received
wifi0: PROBE-REQ E0:C7:67:74:2A:49 (broadcast)
CTRL_IFACE monitor send /tmp/wpa_ctrl_318-13\x00
l2_packet_receive: src=00:26:86:F0:CF:07 len=130
FT: RRB received packet 00:26:86:F0:CF:07 -> 00:26:86:F0:53:AD
FT: RRB-OUI received frame from remote AP 00:26:86:F0:CF:07
FT: RRB-OUI frame - oui_suffix=1
FT: Received PMK-R1 pull
FT: R0KH-ID - hexdump(len=12): 30 30 32 36 38 36 46 30 35 33 41 44
FT: R1KH-ID=00:26:86:F0:CF:07
FT: nonce - hexdump(len=16): e9 0f 6c a6 dc 21 00 cb 8d af 3c 14 0d 5f 77 a0
FT: sequence number - hexdump(len=12): 0f 84 be a1 38 1f d1 a7 31 02 00 00
FT: Possibly invalid sequence number in pull request from 00:26:86:F0:CF:07
FT(RRB): decrypt using key - hexdump(len=32): [REMOVED]
FT(RRB): Failed to decrypt
l2_packet_receive: src=FF:FF:FF:FF:78:4F len=101
__madwifi_hostapd_recv_raw_pkt: len=101
wifi0: Event RX_PROBE_REQ (22) received
wifi0: PROBE-REQ 78:4F:43:9F:BA:84 (broadcast)
CTRL_IFACE monitor send /tmp/wpa_ctrl_318-13\x00
l2_packet_receive: src=FF:FF:FF:FF:E0:C7 len=131


CTRL_IFACE monitor send /tmp/wpa_ctrl_318-13\x00
l2_packet_receive: src=86:F0:53:AD:E0:C7 len=181
__madwifi_hostapd_recv_raw_pkt: len=181
__madwifi_hostapd_recv_action: Received action frame - category 6

wifi0: Event RX_MGMT (18) received
mgmt::action
FT: Received FT Action frame (STA=E0:C7:67:74:2A:49 Target AP=00:26:86:F0:CF:07 Action=1)
FT: RRB send to 00:26:86:F0:CF:07
l2_packet_receive: src=86:F0:53:AD:E0:C7 len=181
__madwifi_hostapd_recv_raw_pkt: len=181
__madwifi_hostapd_recv_action: Received action frame - category 6

wifi0: Event RX_MGMT (18) received
mgmt::action
FT: Received FT Action frame (STA=E0:C7:67:74:2A:49 Target AP=00:26:86:F0:CF:07 Action=1)
FT: RRB send to 00:26:86:F0:CF:07
l2_packet_receive: src=86:F0:53:AD:E0:C7 len=181
__madwifi_hostapd_recv_raw_pkt: len=181
__madwifi_hostapd_recv_action: Received action frame - category 6

wifi0: Event RX_MGMT (18) received
mgmt::action
FT: Received FT Action frame (STA=E0:C7:67:74:2A:49 Target AP=00:26:86:F0:CF:07 Action=1)
FT: RRB send to 00:26:86:F0:CF:07
l2_packet_receive: src=FF:FF:FF:FF:E0:C7 len=131
__madwifi_hostapd_recv_raw_pkt: len=131
wifi0: Event RX_PROBE_REQ (22) received
wifi0: PROBE-REQ E0:C7:67:74:2A:49 (broadcast)

--------------- current AP (AD) ------------------
_______________________________________________
Hostap mailing list
Hostap@xxxxxxxxxxxxxxxxxxx
http://lists.infradead.org/mailman/listinfo/hostap

[Index of Archives]     [Linux Wireless]     [Linux Kernel]     [ATH6KL]     [Linux Bluetooth]     [Linux Netdev]     [Kernel Newbies]     [IDE]     [Security]     [Git]     [Netfilter]     [Bugtraq]     [Yosemite News]     [MIPS Linux]     [ARM Linux]     [Linux Security]     [Linux RAID]     [Linux ATA RAID]     [Samba]     [Device Mapper]

  Powered by Linux