Re: Fragmented EAP ACK problem on -current

2015-01-21 Thread Olivier Cochard-Labbé
The problem was identified and have nothing to do with the wireless stack. The author of hostapd found the problem: The RADIUS UDP packet containing the client certificate is a very big packet, and was fragmented between the Authenticator and Authentication server. The first (big) UDP packet never

Re: Fragmented EAP ACK problem on -current

2015-01-19 Thread Adrian Chadd
how are they being fragmented? 802.11 fragments? Or just separate MPDUs, but not 802.11 fragments? -a On 19 January 2015 at 09:18, Olivier Cochard-Labbé oliv...@cochard.me wrote: Hi, I'm using FreeBSD 11.0-CURRENT r277315 and meet a problem with my FreeBSD Access Point. I'm using

Fragmented EAP ACK problem on -current

2015-01-19 Thread Olivier Cochard-Labbé
Hi, I'm using FreeBSD 11.0-CURRENT r277315 and meet a problem with my FreeBSD Access Point. I'm using WPA2-Enterprise (EAP-TLS) authentication with hostapd. The problem: During EAP-TLS authentication, the Authenticator (FreeBSD/hostapd) correctly send a EAP fragmented Server Hello, Certificate,