Re: Strawman -10
From: Bernard Aboba (bernard_abobahotmail.com)
Date: Tue, 31 Jan 2006 01:45:39 -0800 (PST)
In figure 3, EMSK seems now exported to AAA layer or Lower layer. Is that correct?

The text forbidding the export was removed in Issue 320 with the following proposed change, so it would appear to me that the export is now allowed.


----------------------------------------------------------------------------------------------------------------------------------------
Change

"The EMSK MUST NOT be provided to the lower layer, nor is it permitted
to pass any quantity to the lower layer from which the EMSK could be
computed without breaking some cryptographic assumption, such as
inverting a one-way function."

To

"The EMSK MUST NOT be provided to an entity outside the EAP server or
peer, nor is it permitted to pass any quantity to an entity outside the EAP
server or peer from which the EMSK could be computed without breaking some cryptographic assumption, such as inverting a one-way function."




Results generated by Tiger Technologies using MHonArc.