On Fri, 2007-06-22 at 17:49 +0200, Jiri Benc wrote: > On Fri, 22 Jun 2007 17:30:21 +0200, Johannes Berg wrote: > > In addition, we still have the problem with receiving encrypted eapol > > frames etc. that we really need to see unencrypted but can't make it to > > the network interface. > > Hm, are you able to get such management frames if you're not root (or > has CAP_NET_RAW capabilities)? Currently? You need CAP_NET_ADMIN for PF_PACKET, but I'm not sure what would happen if we passed them up instead of dropping them. There must be a reason we currently drop them. > I think netlink is fine if it is used for injection too (at least of > management frames and WPA stuff). I don't disagree. I'd even say that having both injection interfaces is fine since they really cover different use cases. johannes
Attachment:
signature.asc
Description: This is a digitally signed message part