Re: Strawman -10/EMSK deletion requirement? : EAP peer/authenticator
From: Rafa Marin Lopez (rafadif.um.es)
Date: Fri, 10 Mar 2006 08:39:35 -0800 (PST)
An additional comment, I have been wondering about EAP peer side and EAP authenticator side.

In the EAP peer side, I have some doubts:

It seems following the same that it has been discussed for EAP server, that EAP peer would create the same set of AMSKs than EAP server.
And then AMSKs should be exported to lower layer correct?. However I do not know if the bunch of AMSKs should be exported to the EAP lower layer or
to another "lower layers". Maybe I am wrong, but I was assuming each "application" could have different lower layers to interact with different "authenticators" . And (possibly) each AMSK is intended to be used with each different authenticator.


Additionally, I was wondering how it affects to "Mode Independence". EAP peer might think that EAP authenticator has MSK and AMSKs (or keys derived from them), is that correct?. Also , would it make sense to create AMSKs in case of standalone EAP authenticator?

Thanks.




--
------------------------------------------------------
Rafael Marin Lopez
Faculty of Computer Science-University of Murcia
30071 Murcia - Spain
Telf: +34968367645    e-mail: rafa [at] dif.um.es
------------------------------------------------------


Results generated by Tiger Technologies using MHonArc.