[PATCH] mka: Fix for incorrect update of participant->to_use_sak
Jouni Malinen
j at w1.fi
Mon Feb 6 12:57:55 PST 2017
On Fri, Jan 06, 2017 at 05:47:51PM +0530, Badrish Adiga H R wrote:
> API ieee802_1x_mka_decode_dist_sak_body wrongly puts
> participant->to_use_sak to TRUE, if Distributed SAK Parameter Set of
> length 0 is received; In MACsec PSK mode, this stale incorrect value can
> create problems, while re-establishing CA. In MACsec PSK mode, CA goes
> down if interface goes down and ideally we should be able to re-establish
> the CA once interface comes up.
Thanks, applied.
--
Jouni Malinen PGP id EFC895FA
More information about the Hostap
mailing list