Re: +AFs-eap+AF0- Questions for draft-barany-eap-gee-01
From: Quinn Li (quinn.liqingmail.com)
Date: Wed, 14 Jun 2006 08:27:10 -0700 (PDT)
Hi Vidya,

On 6/14/06, Narayanan, Vidya <vidyan [at] qualcomm.com> wrote:
GEE is not an authentication protocol, as you have correctly understood.
Anything that requires parallel runs of two EAP sessions can use GEE -
the only lower layer that doesn't need this is IKEv2 (since it does much
beyond functioning just as an EAP lower layer). All other lower layers
need a mechanism like GEE to demultiplex the parallel EAP exchanges.
Examples of usage scenarios can be MVNO-based network access, device and
user authentication, etc. The MVNO case has been identified as the one
that immediately requires a solution - hence, GEEv0 has been tailored
for this. However, the protocol has been written in an extensible manner
(the current draft has details on how GEEv1 can extend the protocol for
generic multiple EAP authentications) - so, future versions of GEE can
support multiple EAP exchanges for other purposes as well.

I still wonder why there is a need for parallel EAP goes to same authenticator except MVNO?

Thanks.

Best regards,
Qin

Results generated by Tiger Technologies using MHonArc.