From owner-freebsd-current@freebsd.org Tue Oct 17 18:30:13 2017 Return-Path: Delivered-To: freebsd-current@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id 19E46E43934 for ; Tue, 17 Oct 2017 18:30:13 +0000 (UTC) (envelope-from cy.schubert@komquats.com) Received: from mailman.ysv.freebsd.org (mailman.ysv.freebsd.org [IPv6:2001:1900:2254:206a::50:5]) by mx1.freebsd.org (Postfix) with ESMTP id F224D7D899 for ; Tue, 17 Oct 2017 18:30:12 +0000 (UTC) (envelope-from cy.schubert@komquats.com) Received: by mailman.ysv.freebsd.org (Postfix) id F1860E43932; Tue, 17 Oct 2017 18:30:12 +0000 (UTC) Delivered-To: current@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id F10B1E43931; Tue, 17 Oct 2017 18:30:12 +0000 (UTC) (envelope-from cy.schubert@komquats.com) Received: from smtp-out-so.shaw.ca (smtp-out-so.shaw.ca [64.59.136.139]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client CN "Client", Issuer "CA" (not verified)) by mx1.freebsd.org (Postfix) with ESMTPS id A2A1D7D898; Tue, 17 Oct 2017 18:30:12 +0000 (UTC) (envelope-from cy.schubert@komquats.com) Received: from spqr.komquats.com ([96.50.22.10]) by shaw.ca with SMTP id 4WczehFCq8LPZ4Wd0ehbpj; Tue, 17 Oct 2017 12:30:11 -0600 X-Authority-Analysis: v=2.2 cv=e552ceh/ c=1 sm=1 tr=0 a=jvE2nwUzI0ECrNeyr98KWA==:117 a=jvE2nwUzI0ECrNeyr98KWA==:17 a=02M-m0pO-4AA:10 a=YxBL1-UpAAAA:8 a=6I5d2MoRAAAA:8 a=JAf30KXuAAAA:8 a=gsVTMZc-e18G9YXemzAA:9 a=0d3Gbymw0icyI_P7:21 a=FrYc7tShwVMm2ZT8:21 a=CjuIK1q_8ugA:10 a=B7oAcX1g-pxp_4Rd99MA:9 a=qyELxdWss1W8s_ag:21 a=Ahsjc18wbD99ZTXW:21 a=jTaVwnckFTYJj8V4:21 a=_W_S_7VecoQA:10 a=Ia-lj3WSrqcvXOmTRaiG:22 a=IjZwj45LgO3ly-622nXo:22 a=GEL62FyrTCmHtEug2d3R:22 Received: from [25.172.12.81] (S0106d4ca6d8943b0.gv.shawcable.net [24.68.134.59]) by spqr.komquats.com (Postfix) with ESMTPSA id 2099060F; Tue, 17 Oct 2017 11:30:09 -0700 (PDT) MIME-Version: 1.0 From: Cy Schubert Subject: RE: cve-2017-13077 - WPA2 security vulni Date: Tue, 17 Oct 2017 11:30:13 -0700 To: "current@freebsd.org" , Allan Jude CC: "freebsd-current@freebsd.org" Message-Id: <20171017183009.2099060F@spqr.komquats.com> X-CMAE-Envelope: MS4wfAjFnug+Vr40F5IPNqUSO3rRnQpQaqWbYa8bK41XEtLCNaSTBv+PWgMbiEkjiC2BFMnqbSihk0k4YwgM4wWpG7X7TkC/LAqE623udi9fAnNvNSvPCZXD cK37dVhZrF8NLmPSTe27BOKVMKAWTVtObgMRmv+45g79rn87Ej26Edhprr1E5yVwn6fDGrHimAo44qrCH5PSrIPNBZDsxvjL0P9i4R3I4LNR3FDqJdW0tcZ4 nlMhlpHpMWWwakTdn5sF9g== Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: quoted-printable X-Content-Filtered-By: Mailman/MimeDel 2.1.23 X-BeenThere: freebsd-current@freebsd.org X-Mailman-Version: 2.1.23 Precedence: list List-Id: Discussions about the use of FreeBSD-current List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 17 Oct 2017 18:30:13 -0000 I had no problems last night. It associated with one of my netgear APs. I u= sed /etc/wpa_supplicant.conf. I am running head and all my ports are built on head (most poudeiere and a = few by hand). --- Sent using a tiny phone keyboard. Apologies for any typos and autocorrect. Cy Schubert or -----Original Message----- From: David Wolfskill Sent: 17/10/2017 09:57 To: Allan Jude Cc: freebsd-current@freebsd.org Subject: Re: cve-2017-13077 - WPA2 security vulni On Tue, Oct 17, 2017 at 12:51:23PM -0400, Allan Jude wrote: > .... > > Question: Should one expect a wpa_supplicant-2.6_2 executable built > > under FreeBSD stable/11 (amd64) to work on the same hardware, but > > running head? >=20 > Did you run the version from ports, or did you run the base /etc/rc.d > script with your rc.conf set to point to the ports binary? This will run > the command with -c /etc/wpa_supplicant.conf overriding the ports default= . >=20 > So this is expected to work in this way. Ah. When I installed the port, I was reminded: | ... | =3D=3D=3D> Registering installation for wpa_supplicant-2.6_2 | Installing wpa_supplicant-2.6_2... | To use the ports version of WPA Supplicant instead of the base, add: |=20 | wpa_supplicant_program=3D"/usr/local/sbin/wpa_supplicant" |=20 | to /etc/rc.conf |=20 | =3D=3D=3D> SECURITY REPORT: | .... So I did that. I did not do anything to the existing /etc/rc.d/wpa_supplicant, which had been installed as part of base FreeBSD. > .... Peace, david --=20 David H. Wolfskill david@catwhisker.org Unsubstantiated claims of "Fake News" are evidence that the claimant lies a= gain. See http://www.catwhisker.org/~david/publickey.gpg for my public key.