[RFC PATCH 2/2] hostapd: disable okc by default on WPA3-Personal networks

Michael Yartys michael.yartys at gmail.com
Tue Jul 14 08:32:34 EDT 2020


Don't enable Opportunistic Key Caching by default on WPA3-Personal
networks. iOS devices only require PMKSA caching to be enabled to connect
to a WPA3-Personal network, not Opportunistic Key Caching.

Fixes: 3034f8c3b85e70b1dd9b4cd5cd33e9d2cd8be3b8 ("hostapd: enable PMKSA and OK caching for WPA3-Personal")

Signed-off-by: Michael Yartys <michael.yartys at gmail.com>
---
 package/network/services/hostapd/files/hostapd.sh | 2 +-
 1 file changed, 1 insertion(+), 1 deletion(-)

diff --git a/package/network/services/hostapd/files/hostapd.sh b/package/network/services/hostapd/files/hostapd.sh
index 644bad2a62..e8c7d5154e 100644
--- a/package/network/services/hostapd/files/hostapd.sh
+++ b/package/network/services/hostapd/files/hostapd.sh
@@ -617,7 +617,7 @@ hostapd_set_bss_options() {
 			case "$auth_type" in
 			sae|psk-sae|owe)
 				set_default pmksa_cache 1
-				set_default okc 1
+				set_default okc 0
 			;;
 			*)
 				set_default pmksa_cache 0
-- 
2.26.2




More information about the openwrt-devel mailing list