Windows shows WPA2-Enterprise when it connect to WPA3-Enterprise SSID.

Copper Contributor

"netsh wlan show interface" shows "Authentication : WPA2-Enterprise" even though when I connect to 6GHz  WPA3-Enterprise only mode SSIDs. (not 192 bits mode) 
Is this bug or expected/limitation on Windows clients?


In my understanding, 6GHz only support WPA3.

Also, I checked wireless packet capture. Access Points beacon and Windows client Association request has correct Tag (WPA3 Enterprise only mode) data which described in WFA Specification v3.1.

###

PS C:\Users\xxxx> netsh wlan show interface

There is 1 interface on the system:

Name : Wi-Fi
Description : Intel(R) Wi-Fi 6E AX210 160MHz
GUID : xxxx
Physical address : xxxx
Interface type : Primary
State : connected
SSID : wpa3-ssid
BSSID : xxxx
Network type : Infrastructure
Radio type : 802.11ax
Authentication : WPA2-Enterprise
Cipher : CCMP
Connection mode : Auto Connect
Band : 6 GHz
Channel : 37
Receive rate (Mbps) : 1081
Transmit rate (Mbps) : 1153
Signal : 60%
Profile : wpa3-ssid

 

PS C:\Users\xxx> netsh wlan show drivers

Interface name: Wi-Fi

Driver : Intel(R) Wi-Fi 6E AX210 160MHz
Vendor : Intel Corporation
Provider : Intel
Date : 10/18/2022
Version : 22.180.0.4
INF file : oem2.inf
Type : Native Wi-Fi Driver
Radio types supported : 802.11b 802.11g 802.11n 802.11a 802.11ac 802.11ax
FIPS 140-2 mode supported : Yes
802.11w Management Frame Protection supported : Yes
Hosted network supported : No
Authentication and cipher supported in infrastructure mode:
Open None
Open WEP-40bit
Open WEP-104bit
Open WEP
WPA-Enterprise TKIP
WPA-Enterprise CCMP
WPA-Personal TKIP
WPA-Personal CCMP
WPA2-Enterprise TKIP
WPA2-Enterprise CCMP
WPA2-Personal TKIP
WPA2-Personal CCMP
Open Vendor defined
WPA3-Personal CCMP
Vendor defined Vendor defined
WPA3-Enterprise 192 Bits GCMP-256
OWE CCMP
Number of supported bands : 3
2.4 GHz [ 0 MHz - 0 MHz]
5 GHz [ 0 MHz - 0 MHz]
6 GHz [ 0 MHz - 0 MHz]
IHV service present : Yes

6 Replies

@kshimono 

I have the same problem with a Surface Pro 8 and using Windows 11. I've run every update including drivers for the wireless hardware. I turned off the credential guard as was required. I was able to connect properly with WPA3 personal but not enterprise. I've been working with the wireless AP manufacturer but no luck so far.

Thanks for your comments.
I want someone from Microsoft to comment on this.

Hi @kshimono,

 

Do you have find the solution.

 

I encounter the same thing. I see my users with wpa3 security mode on my wifi controller, but they appears in wpa2 security mode on the windows properties of the connection.

Try setting your network to: Required Protected Management Frames (PMF); rather than: Support (PMF), and rerun: netsh wlan show interface

@kshimono 

Try setting your network to: Required Protected Management Frames (PMF); rather than: Support (PMF), and rerun: netsh wlan show interface

@SteinarGrande netsh wlan show interface shows it as WPA2-Enterprise