]> git.ipfire.org Git - thirdparty/hostap.git/commit
Discard EAPOL-Key request without Secure=1
authorJouni Malinen <j@w1.fi>
Sun, 28 Jan 2024 16:41:06 +0000 (18:41 +0200)
committerJouni Malinen <j@w1.fi>
Sun, 28 Jan 2024 16:41:06 +0000 (18:41 +0200)
commitb27086e6ebe3a55eb4e68dc55df8e7bf3b9944fc
treebc057c1cf98a4b98969fb63f03852172a9c10536
parent09679408850ad1fa9eba6a979421b44b9544ecf4
Discard EAPOL-Key request without Secure=1

EAPOL-Key request is accepted only if the MIC has been verified, so PTK
must have already been derived and Secure=1 needs to be used. Check the
Secure bit explicitly for completeness even though the MIC verification
is already taking care of validating that the sender is in the
possession of valid keys.

Signed-off-by: Jouni Malinen <j@w1.fi>
src/ap/wpa_auth.c