hostap driver bugged

Jan Satko satko
Fri Apr 28 07:36:25 PDT 2006


After some testing of WPA EAP-TTLS or EAP-PEAP i'm completely sure that
hostap driver 0.4.8 is bugged.

Have 2.4 kernel WE18, hostapd 0.5.2.

I debug log last message was:
WPA: PMK from EAPOL state machine (len=32)
WPA: 00:14:bf:dc:92:30 WPA_PTK entering state PTKSTART
wlan0: STA 00:14:bf:dc:92:30 WPA: sending 1/4 msg of 4-Way Handshake
WPA: Send EAPOL(secure=0 mic=0 ack=1 install=0 pairwise=1 ie_len=0
gtk_len=0 keyidx=0 encr=0)
Received management frrame - hexdump(len=60): 0a 02 d5 00 00 14 bf dc 92
30 00 60 b3 64 6d 96 00 60 b3 64 6d 96 a0 be 00 20 31 20 00 00 00 00 46 2f
f4 44 55 b6 d7 81 d8 ad 69 cd 9e f2 2f 1d d6 80 81 2f 5d 6c 08 76 01 b7 7b
62
DATA (TX callback) ACK
Received management frrame - hexdump(len=151): 0a 02 d5 00 00 14 bf dc 92
30 00 60 b3 64 6d 96 00 60 b3 64 6d 96 b0 be 00 20 32 20 00 00 00 00 94 46
c8 a2 a0 4d b3 5c e8 0c 79 a9 95 e2 b2 2f 31 e4 db 7a 3c c9 e6 0b 51 08 23
d1 90 a5 58 2a 6a 37 13 33 e6 df 4a 48 1a 4e 75 32 72 fc f2 20 dc 05 33 1c
1f aa d1 65 ee 10 21 32 45 88 a5 5a a5 82 0c 80 cd 4d 58 46 49 7f 63 1a e4
ca 18 7d 0d a8 91 7a a6 95 24 62 c8 47 b9 56 dc 03 eb 54 e7 d4 cf d6 b2 ea
c0 a8 30 70 d0 33 7e d3 bd 16 e4 bb 79 45 d4 51 82
DATA (TX callback) ACK
Received management frrame - hexdump(len=155): 08 41 d5 00 00 60 b3 64 6d
96 00 14 bf dc 92 30 00 60 b3 64 6d 96 00 af aa aa 03 00 00 00 88 8e 01 03
00 77 fe 01 09 00 20 00 00 00 00 00 00 00 0a a1 fb d7 73 16 0b 9d 03 bb 9a
f0 9f 77 e3 bc c1 01 46 89 21 de 72 4f 16 cd 75 5c c5 77 d2 9a a7 00 00 00
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
00 00 00 00 cd 0c 9b 5b 80 95 71 77 69 00 b4 52 d6 60 43 0f 00 18 dd 16 00
50 f2 01 01 00 00 50 f2 02 01 00 00 50 f2 02 01 00 00 50 f2 01
DATA
IEEE 802.1X: 123 bytes from 00:14:bf:dc:92:30
   IEEE 802.1X: version=1 type=3 length=119
wlan0: STA 00:14:bf:dc:92:30 WPA: received EAPOL-Key frame (2/4 Pairwise)
WPA: 00:14:bf:dc:92:30 WPA_PTK entering state PTKCALCNEGOTIATING
PMK - hexdump(len=32): [REMOVED]
PTK - hexdump(len=64): [REMOVED]
WPA: 00:14:bf:dc:92:30 WPA_PTK entering state PTKCALCNEGOTIATING2
WPA: 00:14:bf:dc:92:30 WPA_PTK entering state PTKINITNEGOTIATING
wlan0: STA 00:14:bf:dc:92:30 WPA: sending 3/4 msg of 4-Way Handshake
WPA: Send EAPOL(secure=0 mic=1 ack=1 install=1 pairwise=1 ie_len=28
gtk_len=0 keyidx=0 encr=0)
Received management frrame - hexdump(len=179): 0a 02 d5 00 00 14 bf dc 92
30 00 60 b3 64 6d 96 00 60 b3 64 6d 96 c0 be 00 20 33 20 00 00 00 00 7b 84
42 3d 9b 8a e8 19 31 33 7f 7e 2f 98 e9 41 d9 42 20 fd 75 17 4c 3d be 75 c2
ed 54 29 ec 4e 13 86 01 49 2b 4e 28 c2 15 04 c5 02 39 3c e6 ea 80 52 21 96
c5 b6 84 d4 2b 95 ae 2b e8 3c 63 98 4f c7 8f b7 e9 90 6c 01 46 2f 25 44 02
17 5e b0 c1 99 2b 5d 26 ac c7 17 f7 d5 48 5a 42 fd db 63 c4 c4 df c8 bc 9a
7e 54 f7 60 03 6f 17 f9 3d 13 c1 12 e9 be 86 95 05 78 65 a9 08 82 28 a4 2e
a6 31 fe ca 1f 9b ae af e8 16 7d 54 6a b0 5f 14 b2 4f df 4c
DATA (TX callback) ACK
wlan0: STA 00:14:bf:dc:92:30 WPA: EAPOL-Key timeout
WPA: 00:14:bf:dc:92:30 WPA_PTK entering state PTKINITNEGOTIATING
wlan0: STA 00:14:bf:dc:92:30 WPA: sending 3/4 msg of 4-Way Handshake
WPA: Send EAPOL(secure=0 mic=1 ack=1 install=1 pairwise=1 ie_len=28
gtk_len=0 keyidx=0 encr=0)
Received management frrame - hexdump(len=179): 0a 02 d5 00 00 14 bf dc 92
30 00 60 b3 64 6d 96 00 60 b3 64 6d 96 70 bf 00 20 34 20 00 00 00 00 17 d1
d1 56 a8 78 8d 71 91 4f 91 b9 3b 71 05 d0 96 85 da bd 54 9a a1 0f 53 65 6f
03 1f 0d c8 45 70 58 5f 2a a9 b8 7b b9 94 16 1e bc 23 8d 24 a5 b4 f9 b3 7c
69 cc 02 f7 83 91 97 50 97 ba 9e 9b c6 91 03 06 7c 8f 57 d9 b5 70 98 58 46
45 3b 1f c7 45 5b d2 eb 32 20 2c 13 8c 83 13 6e 40 92 f1 d7 d0 21 20 99 96
3f 53 e6 ac b9 39 19 b1 0d a3 f0 37 a7 1c 92 c8 7d 1a 99 6a 99 ef 00 34 0c
68 05 10 7d 6a 18 bb 61 f5 88 b8 c7 aa 48 70 aa 1d 43 9c d5
DATA (TX callback) ACK
wlan0: STA 00:14:bf:dc:92:30 WPA: EAPOL-Key timeout
WPA: 00:14:bf:dc:92:30 WPA_PTK entering state PTKINITNEGOTIATING
wlan0: STA 00:14:bf:dc:92:30 WPA: sending 3/4 msg of 4-Way Handshake
WPA: Send EAPOL(secure=0 mic=1 ack=1 install=1 pairwise=1 ie_len=28
gtk_len=0 keyidx=0 encr=0)

EAPOL-Timout is the point.
Driver has some problems and i have dmesg full of error messages about TX
error. some resets and full off:

wlan0: hfa384x_get_rid: CMDCODE_ACCESS failed (res=-1, rid=fd42, len=6)
wlan0: hfa384x_cmd: cmd_queue full
wlan0: hfa384x_get_rid: CMDCODE_ACCESS failed (res=-1, rid=fc0e, len=34)
wlan0: hfa384x_cmd: cmd_queue full
wlan0: hfa384x_get_rid: CMDCODE_ACCESS failed (res=-1, rid=fc84, len=2)
wlan0: hfa384x_cmd: cmd_queue full
wlan0: hfa384x_get_rid: CMDCODE_ACCESS failed (res=-1, rid=fc83, len=2)
wlan0: hfa384x_cmd: cmd_queue full
wlan0: hfa384x_get_rid: CMDCODE_ACCESS failed (res=-1, rid=fc82, len=2)
wlan0: hfa384x_cmd: cmd_queue full
wlan0: hfa384x_get_rid: CMDCODE_ACCESS failed (res=-1, rid=fd48, len=2)
wifi0: hfa384x_cmd: cmd_queue full
wifi0: hfa384x_cmd: cmd_queue full
wifi0: hfa384x_cmd: cmd_queue full
wifi0: hfa384x_cmd: cmd_queue full

Another errors I post some time ago.

S pozdravom

--
   Bc. Jan 'EIS' Satko       Slovak University of Agriculture
 network & system manager            Tr. A. Hlinku 2
  Tel: +421 37 7412 616           949 76 Nitra Slovakia




More information about the Hostap mailing list