Re: channel binding
From: Yoshihiro Ohba (yohbatari.toshiba.com)
Date: Wed, 31 Aug 2005 23:36:28 -0400 (EDT)
On Wed, Aug 31, 2005 at 08:21:10PM -0700, Salowey, Joe wrote:
> > I have a doubt about applicability of keyed MAC for a blob in 
> > three-party key management system.  If the keyed MAC is 
> > generated by peer and authenticator, and the authenticator 
> > sends the MAC to the server (via a AAA protocol), which key 
> > is used for MAC computation? 
> 
> [Joe] OK I think I see the misunderstanding.  The Keyed MAC is
> transmitted as part of the Method between the EAP-Peer and the
> EAP-Server.  The authenticator is not involved directly. 

OK, then the authenticator would need to send the blob itself to the
EAP-server for EAP-method based solution.

Yoshihiro Ohba


Results generated by Tiger Technologies using MHonArc.