Re: Strawman -10/EMSK deletion requirement?
From: Jari Arkko (jari.arkkopiuha.net)
Date: Sun, 12 Mar 2006 14:23:53 -0800 (PST)
Avi Lior wrote:

>>The role of the 
>>EAP keying framework is to leave some key material in the EAP 
>>server to enable such functionality, but if we are going to 
>>use it, we will need, among other things, protocol 
>>descriptions on how RADIUS can retrieve pieces of this key 
>>information and how particular applications employ these keys.
>>    
>>
>
>If RADIUS is colocated with EAP-server do we need to define a protocol
>for getting the AMSK(s)?
>  
>

I do not think we need a protocol definition between the AAA and EAP layers;
this is mostly an API in any case.

However, I do believe that if some device (e.g. a NAS, DHCP server, ...)
is going
to need an AMSK, then its very unlikely that such a device is in the
same box
as the AAA and EAP servers. This implies that we do need a protocol
extension
from a AAA client to the AAA server to retrieve AMSKs. This isn't a task
that we commit to taking in the EAP keying framework or EAP WG. Go
talk to the RADEXT or DIME groups instead.

--Jari



Results generated by Tiger Technologies using MHonArc.