Re: EAP-AKA Key derivation
From: Bernard Aboba (bernard_abobahotmail.com)
Date: Mon, 9 Jan 2006 05:05:14 -0800 (PST)
What I am just interested in, is the reason of the authors of EAP-SIM
and EAP-AKA for having adopted the DSS-KDF.

I'm actually more concerned about the ability to negotiate KDFs. As you note, KDFs are increasingly encountering security issues. Unless they can be negotiated, this is going to cause a problem.


As I understand it, the IETF is going to be looking at negotiation of KDFs within protocols such as TLS or IKE. Also, the implication is that future protocols should enable KDF negotiation.



Results generated by Tiger Technologies using MHonArc.