Re: review of draft-salowey-eap-key-deriv-02.txt
From: Jari Arkko (jari.arkkopiuha.net)
Date: Wed, 19 Nov 2003 14:27:22 -0600 (CST)
Joseph Salowey wrote:

3. I'm not sure I like the idea of EMSK Name being derived from
   KDF(EMSK), if there are alternatives. Would it be possible to
   name the EMSK by the EAP SA Name defined in eap-keying (derived
   from nonces), concanated with, say, "EMSK". Similarly, we could
   name each AMSK as the name of the EMSK, concatenated with "AMSK"
   and the key label and application data?


[Joe] I don't like the proposal either.  The problem is that the EAP SA
name is not concretely defined.  I'm not sure you can define this for
all methods in general.  We need to place a requirement on methods that
if they are going to generate additional keys they must also export an
EAP-SA name.

Yes, that's right. Ok, I'll settle for your current text then on that.

--Jari





Results generated by Tiger Technologies using MHonArc.