On Fri, 10 Jul 2020 at 08:34, D. Hugh Redelmeier via talk <talk@gtalug.org> wrote:

(WPS does or did have a weakness if I remember correctly.  My brute
force solution has been to disable WPS.  There may have been fixes.)

Ohh.  KRACK.  WPA2 isn't competent.  I forgot.
<https://en.wikipedia.org/wiki/KRACK>---
Post to this mailing list talk@gtalug.org

OpenWrt does provide a workaround for WPA key reinstallation attacks. See the description of "wpa_disable_eapol_key_retries" parameter and the comments that follow at this page: https://openwrt.org/docs/guide-user/network/wifi/basic