Questions on using EAP-AKA

Jouni Malinen j
Tue Dec 24 08:43:33 PST 2013


On Tue, Dec 24, 2013 at 05:40:09AM -0800, Ben Greear wrote:
> As per our understanding, the station required  'k' : 'OPc' : 'SQN' in its configuration. Right ?
> 
> Question is why do we need to configure SQN at UE side ? Shouldn't UE extract it from Received challenge (AUTN) ?

SQN is used for replay protection, i.e., it needs to be configured so
that the value received from the server can be verified.

-- 
Jouni Malinen                                            PGP id EFC895FA



More information about the Hostap mailing list