[Mipshop] Re: Review of draft-vidya-mipshop-handover-keys-aaa-00.txt
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[Mipshop] Re: Review of draft-vidya-mipshop-handover-keys-aaa-00.txt



> So, the real question here is - should we do a handover key
request/response exchange between the MN and AR embedded in the PANA
protocol (and then embedded in some EAP method between the AR and AAA
server) or if we should have that as a separate protocol.
>
> If I understand correctly, you are proposing that it should be an
extension to PANA and an EAP method that allows it - right?
>
> So, lets say we choose to do this using PANA. Lets consider this scenario:
>
> The MN associates with an AP, does 802.11i and gains network access. The
AP itself is not doing PANA, so, this is just link layer access. Now, the MN
needs to talk PANA with the AR to get a handover key. Does an entire EAP
method exchange have to happen again for this key to be derived? Or, am I
missing something big here?
>

Why does the MN have to use PANA when it uses 802.11i for network access?
Why can't it just use the EAP method with the handover key extension during
802.1x?

        jak



_______________________________________________
Mipshop mailing list
Mipshop at ietf.org
https://www1.ietf.org/mailman/listinfo/mipshop




Note: Messages sent to this list are the opinions of the senders and do not imply endorsement by the IETF.