On Sat, Sep 21, 2024 at 06:33:03AM +0000, Matthew Wang wrote: > MLD APs require MFPC and disallow PSK key managements. There has been a number of deployed "pre Wi-Fi 7" APs that enable MLO with WPA2-Personal and without PMF. As such, this change would seem to cause inconvenient user experience and no way of working around that regardless of whether the local device even supports MLO. In practice, the most convenient approach for this seems to be to allow the connection, but disable MLO if PMF cannot be negotiated. IEEE P802.11be/D7.0 does not actually disallow PSK AKMs for EHT cases. Such a requirement comes from WFA for Wi-Fi 7. I don't think wpa_supplicant should be trying to enforce this taken into account those early deployed APs that are known to use WPA2-Personal with MLO. -- Jouni Malinen PGP id EFC895FA _______________________________________________ Hostap mailing list Hostap@xxxxxxxxxxxxxxxxxxx http://lists.infradead.org/mailman/listinfo/hostap