RE: Proposed Resolution to Issue 311: EAP and Authorization
From: Alper Yegin (alper.yeginyegin.org)
Date: Tue, 10 Jan 2006 15:27:38 -0800 (PST)
> To:
> 
> "The EAP server also stores the peer's identity as well as other
> information
> associated with it. This information may be used to determine whether
> access
> to some service should be granted. 

Do we really have to say this last sentence? It is mixing up authentication
(what EAP server does) with authorization (what, e.g., RADIUS server does).

Alper



> The peer
> stores information necessary to choose which secret to use for which
> service.
> 
> If authentication is based on proof of possession of the private key
> corresponding to the public key contained within a certificate, the
> parties store the EAP method to be used and the trust anchors used to
> validate the certificates.  The EAP server also stores the peer's
> identity and the peer stores information
> necessary to choose which certificate to use for which service."
> 
> 
> _________________________________________________________________
> To unsubscribe or modify your subscription options, please visit:
> http://lists.frascone.com/mailman/listinfo/eap
> 
> Arhives: http://lists.frascone.com/pipermail/eap


Results generated by Tiger Technologies using MHonArc.