On 2019-05-02 12:36, Alan DeKok wrote: > On May 2, 2019, at 4:17 AM, Joakim Lotsengård <joakim.lotsengard@xxxxxxxxxxxx> wrote: >> We do not want to use radius for this as this complicates things and doesn't >> fit with our environment at all. > > RADIUS is exactly the right solution, unfortunately. If you control the environment, it doesn't matter what software you're running. > > Setting up a private RADIUS server will likely be less work than modifying hostap. You will also get industry standard ways to deal with authentication, authorization, and accounting. > Sadly this is not possible for us. We have limited RAM, CPU and flash. We also do not want to introduce yet another server/daemon that holds a state which may become unsynchronized. Yet another daemon for systemd to handle. This is why we use the PSK-file of hostapd today. It is simple and uses small amount of resources. We don't have a problem with the PSK-file, only the control interface socket to get which stations was authenticated. -- Best regards, Joakim Lotsengård _______________________________________________ Hostap mailing list Hostap@xxxxxxxxxxxxxxxxxxx http://lists.infradead.org/mailman/listinfo/hostap