Re: Proposed Resolution to Issue 352: Channel Binding Issue
From: Bernard Aboba (bernard_abobahotmail.com)
Date: Tue, 6 Jun 2006 19:26:27 -0700 (PDT)
Got it.

So here is my intended text:

"
It is also possible to achieve Channel Bindings without transporting
data over EAP.  For example, see [I-D.draft-ohba-eap-channel-binding].
In this approach the EAP method includes Channel Bindings in the
calculation of exported EAP keying material, making it impossible for
the peer and authenticator to complete the Secure Association Protocol
if there is a mismatch in the Channel Bindings.  However, this
approach can only be applied where EAP methods generating key material
are used along with lower layers that utilize the keying material.
For example, this mechanism would not enable verification of Channel
Bindings on wired IEEE 802 networks using IEEE 802.1X.
"

Yoshihiro Ohba


Results generated by Tiger Technologies using MHonArc.