Opportunistic Key Caching for Fast Roaming

Opportunistic Key Caching (OKC is an authentication technique between multiple APs in a network where those APs are under common administrative control.

OKC is applicable only when the key management is WPA2-Enterprise (WPA-2 and WPA). OKC is not a fast-secure roaming method defined by the 802.11 standards and is not supported by many devices. OKC is disabled by default.

When OKC is enabled, multiple APs shares Pairwise Master Keys (PMK). The client can roam to a new AP and reuse a PMK that was established with the current AP. OKC allows the station to roam quickly to an AP it has never authenticated to, without having to perform pre-authentication.

The following screenshot displays the OKC option on the Aruba AP.
Note: OKC is applicable only for Aruba infrastructure.