3 ms·
Only an encrypted version of the password right ?
by ramshorst 5y ago
Only an encrypted version of the password right ?
- sohkamyung 5y agoThe password is never 'shared', encrypted or not. Instead, both the client (Station) and the AP have to prove to each other that they already know the password (shared key). From the Wikipedia article: > The four-way handshake is designed so that the access point (or authenticator) and wireless client (or supplicant) can independently prove to each other that they know the PSK/PMK, without ever disclosing the key.
- nly 5y agoIn WPA2 if the key is weak it's irrelevant, since anyone capturing one handshake can brute force it offline (without communicating with the AP).