RE: Proposed Resolution to Issue 323: AAA Key Cache
From: Bernard Aboba (Bernard_Abobahotmail.com)
Date: Mon, 16 Jan 2006 18:46:27 -0800 (PST)
[Joe] Why do you want to use the same key in both places?

[BA] I don't know why that would be necessary or desirable.  

[Joe] If I understand the current text correctly it is stating that an
entity should not simultaneously cache and transport a key.  In general
this is good practice because it prevents reuse of a key, if you are
going to give someone else a key for a specific purpose you should not
hold onto it for another use.  While I don't  agree with a MUST NOT
cache transported keys, I would question why you would want to do this.
It seems that the current text allows one to cache a key and export keys
derived from it.  Perhaps the text should explicitly say so. 

[BA] That sounds reasonable.  Do you have some text to suggest?

Results generated by Tiger Technologies using MHonArc.