| RE: EAP-SIM fast re-auth identity | <– Date –> <– Thread –> |
|
From: Nakhjiri Madjid-MNAKHJI1 (Madjid.Nakhjiri |
|
| Date: Wed, 6 Apr 2005 15:19:09 -0400 (EDT) | |
|
Hi Thomas,
Thanks for being among helpful "other people" J Ok, I am not sure how fast re-authentication protects the use identity, so I can understand if no protection is provided, that would be one way to protect the permanent identities such as IMSI. But what I don't understand is how every use of IMSI means use of new triplets? Sure EAP-SIM draft says that it does not allow re-use of triplets (I guess for full authentication), but from what I understand the fast re-authentication does not use any triplets, so the question of "re-use versus using fresh" should be moot.
I do have another issue with the fast re-auth. Most of the sequence charts only show a peer and an authenticator. Does this mean the authenticator is the NAS or that it is the EAP server? I am trying to understand how this fits into a 3 party EAP authentication model and whether the fast re-authentication can apply to handovers or it is just re-authentication to the same authenticator?
Regards,
Madjid
-----Original Message-----
Hi, |
-
EAP-SIM fast re-auth identity Nakhjiri Madjid-MNAKHJI1, April 5 2005
- Re: EAP-SIM fast re-auth identity Thomas Wieland, April 6 2005
- RE: EAP-SIM fast re-auth identity henry.haverinen, April 6 2005
- RE: EAP-SIM fast re-auth identity Nakhjiri Madjid-MNAKHJI1, April 6 2005
- RE: EAP-SIM fast re-auth identity Nakhjiri Madjid-MNAKHJI1, April 6 2005
- RE: EAP-SIM fast re-auth identity henry.haverinen, April 11 2005
- RE: EAP-SIM fast re-auth identity henry.haverinen, April 11 2005
- RE: EAP-SIM fast re-auth identity Nakhjiri Madjid-MNAKHJI1, April 12 2005
Results generated by Tiger Technologies using MHonArc.