From: Waldemar Brodkorb <wbx@openadk.org>
To: "Dembianny Sven (BSH GDE-EDSD7)" <sven.dembianny@bshg.com>
Cc: "Michael Nazzareno Trimarchi" <michael@amarulasolutions.com>,
"François Galea" <fgalea@free.fr>,
"connman@lists.linux.dev" <connman@lists.linux.dev>,
"wbx@openadk.org" <wbx@openadk.org>
Subject: Re: Connection to a WPA2 Wi-Fi router fails
Date: Sun, 9 Aug 2026 08:41:21 +0200 [thread overview]
Message-ID: <anghETbH2WzsZIJ9@waldemar-brodkorb.de> (raw)
In-Reply-To: <VI0PR10MB8908DC25598F38832175F6D6F4002@VI0PR10MB8908.EURPRD10.PROD.OUTLOOK.COM>
Hi Sven,
Dembianny Sven (BSH GDE-EDSD7) wrote,
> Hi Michael,
>
> I don't think so, e.g., if AP does not support SAE but repeater does, roaming will fail.
> This will also break certification tests.
>
> @ François do you have more info about your setup, e.g. MFP setting on AP/wpa_supplicant config/WPA-PSK-SHA256 instead of WPA-PSK?
Sorry for the late reply. Francois seems not to answered your
question and I see no fixes for this problem in GIT master either.
My AP is a standard Vodafone AP with WPA2.
How can I give you better information about the details of this AP?
best regards
Waldemar
> Best regards, Sven
>
> > -----Original Message-----
> > From: Michael Nazzareno Trimarchi <michael@amarulasolutions.com>
> > Sent: Dienstag, 12. Mai 2026 11:33
> > To: François Galea <fgalea@free.fr>; Dembianny Sven (BSH GDE-EDSD7) <sven.dembianny@bshg.com>
> > Cc: connman@lists.linux.dev; wbx@openadk.org
> > Subject: Re: Connection to a WPA2 Wi-Fi router fails
> >
> > Hi
> >
> > On Tue, May 12, 2026 at 11:14 AM François Galea <fgalea@free.fr> wrote:
> > >
> > > Hello,
> > >
> > > This was tested on a Zynq (Cortex-A9) and a RPi4, on a 32-bit Arm
> > > Buildroot Linux system.
> > >
> > > The Wi-Fi router uses WPA2 Personnal authentication.
> > >
> > > Problem starts from buildroot releases including connman 1.45.
> > > Previous releases using connman 1.44 and prior are working fine. Also
> > > switching from 1.45 to 1.44 in a buildroot version that includes connman 1.45 works.
> > >
> > >
> > > If a connection was previously successfully set up, for instance from
> > > connman 1.44 or older, `/var/log/messages` contains:
> > >
> > > Jan 1 00:00:11 zest daemon.info connmand[141]: Adding interface wlan0
> > > [ wifi ] Jan 1 00:00:11 zest daemon.info connmand[141]: eth0 {update}
> > > flags
> > > 36867 <UP>
> > > Jan 1 00:00:11 zest daemon.info connmand[141]: eth0 {newlink} index 2
> > > address 9A:8F:85:81:67:B4 mtu 1500 Jan 1 00:00:11 zest daemon.info
> > > connmand[141]: eth0 {newlink} index 2 operstate 2 <DOWN> Jan 1
> > > 00:00:11 zest daemon.info dbus-daemon[120]: [system] Successfully
> > > activated service 'fi.w1.wpa_supplicant1'
> > > Jan 1 00:00:11 zest daemon.info connmand[141]: wlan0 {update} flags
> > > 36931 <UP,RUNNING>
> > > Jan 1 00:00:11 zest daemon.info connmand[141]: wlan0 {newlink} index
> > > 4 address 8C:3D:16:20:0E:4A mtu 1500 Jan 1 00:00:11 zest daemon.info
> > > connmand[141]: wlan0 {newlink} index 4 operstate 0 <UNKNOWN> Jan 1
> > > 00:00:11 zest daemon.info connmand[141]: wlan0 {update} flags
> > > 36867 <UP>
> > > Jan 1 00:00:11 zest daemon.info connmand[141]: wlan0 {newlink} index
> > > 4 address 8C:3D:16:20:0E:4A mtu 1500 Jan 1 00:00:11 zest daemon.info
> > > connmand[141]: wlan0 {newlink} index 4 operstate 2 <DOWN> Jan 1
> > > 00:00:11 zest daemon.info connmand[141]: wlan0 {newlink} index 4
> > > address 8C:3D:16:20:0E:4A mtu 1500 Jan 1 00:00:11 zest daemon.info
> > > connmand[141]: wlan0 {newlink} index 4 operstate 2 <DOWN> Jan 1
> > > 00:00:11 zest daemon.info connmand[141]: Interface wlan0 [ wifi ]
> > > state is association Jan 1 00:00:11 zest daemon.warn connmand[141]:
> > > Interface wlan0 [ wifi ] error "invalid-key"
> > > Jan 1 00:00:11 zest daemon.info connmand[141]: Interface wlan0 [ wifi
> > > ] state is failure
> > >
> > >
> > > Otherwise, when creating a new connection:
> > >
> > > # connmanctl
> > > Error getting VPN connections: The name net.connman.vpn was not
> > > provided by any .service files
> > > connmanctl> services
> > >
> > > connmanctl> enable wifi
> > > Enabled wifi
> > > connmanctl> scan wifi
> > > Scan completed for wifi
> > > connmanctl> services
> > > Kamoulox wifi_8c3d16200e4a_4b616d6f756c6f78_managed_psk
> > > Livebox-D050
> > > wifi_8c3d16200e4a_4c697665626f782d44303530_managed_psk
> > > Freebox-3B4B3C
> > > wifi_8c3d16200e4a_46726565626f782d334234423343_managed_psk
> > > patetalex wifi_8c3d16200e4a_7061746574616c6578_managed_psk
> > > DRAME wifi_8c3d16200e4a_4452414d45_managed_psk
> > > connmanctl> agent on
> > > Agent registered
> > > connmanctl> connect wifi_8c3d16200e4a_4b616d6f756c6f78_managed_psk
> > > Agent RequestInput wifi_8c3d16200e4a_4b616d6f756c6f78_managed_psk
> > > Passphrase = [ Type=psk, Requirement=mandatory, Alternates=[ WPS ] ]
> > > WPS = [ Type=wpspin, Requirement=alternate ] Passphrase?
> > > my_wifi_passphrase Agent ReportError
> > > wifi_8c3d16200e4a_4b616d6f756c6f78_managed_psk
> > > invalid-key
> > > connmanctl> Retry (yes/no)? no
> > > Error
> > > /net/connman/service/wifi_8c3d16200e4a_4b616d6f756c6f78_managed_psk:
> > > Input/output error
> > > connmanctl>
> >
> >
> > I think that change only asks the agent who established the connection to try the various method. Is
> > the patch in attach work?
> > * sven *: Does it cover your use case too?
> >
> > Michael
> >
> >
> > >
> > >
> > >
> > > From both situations it appears the wifi passphrase is not accepted.
> > >
> > > wbx (as CC of this email) noticed that reverting commit
> > > 5e73b55e00b97e1867397258b72f0d6e5ad7d31d allows connections to work again.
> > >
> > > Is it a known situation? Is there a patch available?
> > >
> > > Best,
> > >
> > > François
> > >
> > >
> >
> >
> > --
> > Michael Nazzareno Trimarchi
> > Co-Founder & Chief Executive Officer
> > M. +39 347 913 2170
> > michael@amarulasolutions.com
> > __________________________________
> >
> > Amarula Solutions BV
> > Joop Geesinkweg 125, 1114 AB, Amsterdam, NL T. +31 (0)85 111 9172 info@amarulasolutions.com
> > http://www.amarulasolutions.com/
> > &data=05%7C02%7Csven.dembianny%40bshg.com%7Cf4aa618e280e45c3d76e08deb0096f57%7C0ae5
> > 1e1907c84e4bbb6d648ee58410f4%7C0%7C0%7C639141751758647935%7CUnknown%7CTWFpbGZsb3
> > d8eyJFbXB0eU1hcGkiOnRydWUsIlYiOiIwLjAuMDAwMCIsIlAiOiJXaW4zMiIsIkFOIjoiTWFpbCIsIldUIjoyfQ
> > %3D%3D%7C0%7C%7C%7C&sdata=8tD7KmAQSPxg%2BRZ0yB7MYBeWVudCjvw4T4MJhOHy3%2Fk%3D
> > &reserved=0
next prev parent reply other threads:[~2026-08-09 6:41 UTC|newest]
Thread overview: 14+ messages / expand[flat|nested] mbox.gz Atom feed top
2026-05-12 9:10 Connection to a WPA2 Wi-Fi router fails François Galea
2026-05-12 9:32 ` Michael Nazzareno Trimarchi
2026-05-12 10:09 ` François Galea
2026-05-19 14:16 ` Dembianny Sven (BSH GDE-EDSD7)
2026-05-19 14:20 ` Michael Nazzareno Trimarchi
2026-08-09 6:41 ` Waldemar Brodkorb [this message]
2026-08-10 6:28 ` Dembianny Sven (BSH GDE-EDSD7)
2026-08-11 17:30 ` Waldemar Brodkorb
2026-08-13 7:05 ` Dembianny Sven (BSH GDE-EDSD7)
2026-08-15 6:12 ` Waldemar Brodkorb
2026-08-17 6:17 ` Dembianny Sven (BSH GDE-EDSD7)
2026-08-17 7:18 ` Waldemar Brodkorb
2026-08-17 10:03 ` Dembianny Sven (BSH GDE-EDSD7)
2026-08-19 3:59 ` Waldemar Brodkorb
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=anghETbH2WzsZIJ9@waldemar-brodkorb.de \
--to=wbx@openadk.org \
--cc=connman@lists.linux.dev \
--cc=fgalea@free.fr \
--cc=mail@waldemar-brodkorb.de \
--cc=michael@amarulasolutions.com \
--cc=sven.dembianny@bshg.com \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox