Description | This article describes how to verify the cause of failure when WiFi devices experience random connection issues to an SSID enabled with MPSK. |
Scope | Validation of the Authentication Issue with the SSID mapped to the MPSK Profile. |
Solution |
If WiFi devices are experiencing authentication issues with the SSID using the MPSK profile after an upgrade, and the devices fail during the 4-way handshake at step 2 of the WPA handshake (specifically, due to an invalid MIC in the 2/4 message of the 4-way handshake), it is necessary to check if the MPSK keys are fully loaded in the wpad daemon after applying a VAP with the MPSK-profile selected on a FortiAP.
In the above scenario, only 80 Keys are visible instead of the 101 Keys in wpad daemon debug. It is then necessary to recreate the MPSK profile or upgrade the FortiGate Firewall to version v7.4.1 or v7.2.7. |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.