From: Martin Willi Date: Thu, 7 Jan 2010 14:56:11 +0000 (+0100) Subject: EAP-MSCHAPv2 is indeed mutual, but is prone to MITM dictionary attacks X-Git-Tag: 4.3.6~41 X-Git-Url: http://git.ipfire.org/cgi-bin/gitweb.cgi?a=commitdiff_plain;h=34948b99710af7a011794ac2a7e99185fc332168;p=thirdparty%2Fstrongswan.git EAP-MSCHAPv2 is indeed mutual, but is prone to MITM dictionary attacks --- diff --git a/src/charon/plugins/eap_mschapv2/eap_mschapv2.c b/src/charon/plugins/eap_mschapv2/eap_mschapv2.c index 71e313ae0b..f0222840d0 100644 --- a/src/charon/plugins/eap_mschapv2/eap_mschapv2.c +++ b/src/charon/plugins/eap_mschapv2/eap_mschapv2.c @@ -1152,7 +1152,7 @@ static status_t get_msk(private_eap_mschapv2_t *this, chunk_t *msk) */ static bool is_mutual(private_eap_mschapv2_t *this) { - return TRUE; + return FALSE; } /**