mirror of https://github.com/hak5/openwrt.git
hostapd: enable PMKSA and OK caching for WPA3-Personal
This enables PMKSA and opportunistic key caching by default for WPA2/WPA3-Personal, WPA3-Personal and OWE auth types. Otherwise, Apple devices won't connect to the WPA3 network. This should not degrade security, as there's no external authentication provider. Tested with OCEDO Koala and iPhone 7 (iOS 13.1). Signed-off-by: David Bauer <mail@david-bauer.net>master
parent
6ea5f7d44c
commit
3034f8c3b8
|
@ -553,7 +553,14 @@ hostapd_set_bss_options() {
|
|||
append bss_conf "rsn_preauth=1" "$N"
|
||||
append bss_conf "rsn_preauth_interfaces=$network_bridge" "$N"
|
||||
else
|
||||
set_default auth_cache 0
|
||||
case "$auth_type" in
|
||||
sae|psk-sae|owe)
|
||||
set_default auth_cache 1
|
||||
;;
|
||||
*)
|
||||
set_default auth_cache 0
|
||||
;;
|
||||
esac
|
||||
fi
|
||||
|
||||
append bss_conf "okc=$auth_cache" "$N"
|
||||
|
|
Loading…
Reference in New Issue