On Wed, 2016-01-06 at 10:09 +0100, Matthias May wrote: > > afaik it solves the issue that when a STA roames from AP1 to AP2, and > key material is installed at different times. > We observed encrypted frames which had a wrong CCMP counter. If the > STA > updates it's counter with these frames then depending on the wrong > CCMP > value received, up to a few hundred frames were dropped. I don't really see how it has any effect there either, since in that case the old key material should be deleted long before the new one is installed, so the cross-over that causes the PN update problem with rekeying can't happen? > Not exactly the same as rekeying but the effect are pretty similar. Ignoring the discussion about the effect of the patch in roaming, the patch really can't do anything for rekeying since the station never goes back to !authorized in that case, so it can't really be relevant for this thread. johannes -- To unsubscribe from this list: send the line "unsubscribe linux-wireless" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html