We don't have PMF support yet sorry!

please turn that off and try again!


-adrian

On Sun, 30 Nov 2025 at 21:35, FreeBSD User <[email protected]> wrote:
>
> On Sun, 30 Nov 2025 23:27:40 +0000 (UTC)
> "Bjoern A. Zeeb" <[email protected]> wrote:
>
> > On Sat, 29 Nov 2025, FreeBSD User wrote:
> >
> > > <4>WPA: Failed to configure IGTK to the driver
> > > <3>RSN: Failed to configure IGTK
> >
> > What's your wpa_supplicant.conf file looking like.
> >
> > Do you by any chance change any of these two variables?
> > pmf=0
> > ieee80211w=0
> >
> >
>
> [... /etc/rc.conf ...]
> wlans_iwlwifi0="wlan0"
> ifconfig_wlan0="DHCP WPA"
> ifconfig_wlan0_ipv6="inet6 accept_rtadv -ifdisabled nud -no_radr 
> auto_linklocal"
> create_args_wlan0="country DE regdomain ETSI"
> [...]
>
> [... /etc/wpa_supplicant.conf ...]
>
> ctrl_interface=/var/run/wpa_supplicant
> ctrl_interface_group=wheel
> #eapol_version=2
> ap_scan=1
> # Protected Management Frames default
> # per network selectable via ieee80211w
> # 0: disabled
> # 1: enabled
> # 2: required
> pmf=2
>
> # AP-Wifi
> network={
>   id_str="AP-WiFi"
>   ssid="AP-WiFi"
>   auth_alg=OPEN
>   key_mgmt=WPA-PSK
>   pairwise=CCMP
>   group=CCMP
>   proto=RSN
>   psk=SOME_SECRET
> }
>
> # Alt-AP
> network={
>   id_str="Alt-AP"
>   ssid="Alt-AP"
>   auth_alg=OPEN
>   key_mgmt=WPA-PSK
>   pairwise=CCMP
>   group=CCMP
>   proto=RSN
>   ieee80211w=2
>   psk=SOME_SECRET_2
> }
>
> network={
>   id_str="eduroam"
>   ssid="eduroam"
>   scan_ssid=1
>   key_mgmt=WPA-EAP WPA-EAP-SHA256
>   eap=PEAP TTLS TLS
>   proto=RSN
>   identity="IDENTITY"
>   anonymous_identity="[email protected]"
>   ca_cert="/usr/local/etc/cacerts/certificate.pem"
>   phase1="peaplabel=1"
>   phase2="auth=MSCHAPV2"
>   password="SECRET"
>   ieee80211w=2
> }

Reply via email to