CCMP Header CCMP Hdr
Encryption 8 octets CCMP-128 protection unverified
Carries the packet number used to build the nonce, and identifies which key was used.
Reading a capture
Sent in the clear. It has to be, because the receiver needs the packet number and key identifier before it can decrypt anything.
Subfields
- Key ID octet — Identifies the key and marks the extended IV as present.
Where it sits
Protected Frame Body > CCMP Header
Accuracy
- Clause
- 802.11-2024 §12.5.3.2
- Byte order
- little-endian — least significant octet first
- Verified
- Not verified against the standard. Treat this as a claim, not a fact.
◆ Auditing as