Re: EAP-AKA review
From: Yoshihiro Ohba (yohbatari.toshiba.com)
Date: Tue, 12 Oct 2004 10:31:10 -0400 (EDT)
On Tue, Oct 12, 2004 at 01:13:32PM +0300, Jari Arkko wrote:
> 
> >The text in Section 9.6 discusses which EAP packets are protected,
> >and EAP Notifications are only mentioned in order to make it clear
> >that EAP-AKA does not protect them.
> 
> That seems appropriate. Perhaps we just need to clarify that
> EAP-AKA does not specify notifications need to be used, but
> if they are used they should be used according to RFC 3748.
> EAP-AKA does not need to prohibit Notifications, as far as
> I can determine.


RFC 3748 does not specify when to send an EAP-Request/Notification.
If EAP-AKA allows EAP Notification, but does not specify when to sent,
there is no specification so far that defines when to send an
EAP-Request/Notification during EAP-AKA.  It seems that there are two
choices:

(a) Have an explicit text saying that EAP-AKA does not prohibit EAP
Notification but it is out of the scope of the document as to when an
EAP-Request/Notification is sent within EAP-AKA.

(b) Just prohibit EAP Notifications during EAP-AKA.

My personal preference is (b) for simplicity unless there is specific
reason to allow EAP Notification during EAP-AKA in addition to
AKA-Notifications.

What do you think?

Yoshihiro Ohba


> 
> --Jari

Results generated by Tiger Technologies using MHonArc.