|
|||||||||||
|
[Mobopts] RE: Review of draft-vidya-mipshop-handover-keys-aaa-00.txt
From: Narayanan Vidya-CVN065 <vidya(at)motorola.com>
Date: Thu Jul 21 2005 - 13:50:30 EDT
> > >
Precisely. I don't see an issue when the AR itself is the NAS. In the scenario I was describing, the NAS is the AP, but the key needs to be sent to the AR. > If the NAS is not co-located with the AR (e.g. 802.1X), the NAS may
Yes, this is really the problem. Not all the AAA key management criteria will be satisfied when the NAS is different from the entity that needs the key. Also, now this means that the solution will need to be specific to each lower layer encapsulating EAP - if an 802.11 AP or an 802.16 BS needs to send the key to the AR. And, given that typically you would not expect an SA between the AP/BS and the AR, this is a problem. Vidya Mobopts mailing list Mobopts@irtf.org https://www1.ietf.org/mailman/listinfo/mobopts Received on Thu Jul 21 13:52:04 2005 This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 12:43:15 EDT |
||||||||||
|
|||||||||||