[PATCH] mka: Fix for incorrect update of participant->to_use_sak

Jouni Malinen j at w1.fi
Mon Feb 6 12:57:55 PST 2017


On Fri, Jan 06, 2017 at 05:47:51PM +0530, Badrish Adiga H R wrote:
> API ieee802_1x_mka_decode_dist_sak_body wrongly puts
> participant->to_use_sak to TRUE, if Distributed SAK Parameter Set of
> length 0 is received; In MACsec PSK mode, this stale incorrect value can
> create problems, while re-establishing CA. In MACsec PSK mode, CA goes
> down if interface goes down and ideally we should be able to re-establish
> the CA once interface comes up.

Thanks, applied.
 
-- 
Jouni Malinen                                            PGP id EFC895FA



More information about the Hostap mailing list