eap-7----Page:5
1  2  3  4  5  6  7  8  9  10  11  12  13  14 

Master Key Types (cont’d)
Extended Master Session Key (EMSK)
64B of keying material that is derived between the EAP client and server and exported by the EAP method. Use of the EMSK is reserved, and it MUST NOT be transported by the AAA server to the NAS. The EMSK MUST be cryptographically independent from the MSK. The EMSK is the residue of successful authentication, although possession does not enable fast re-authentication.
Initialization Vector (IV)
64B derived between EAP client and server, optionally exported by the EAP method, which is suitable for use in an initialization vector. Due to export requirements the IV may be a known quantity. Currently the IV is not used in either the two-way or three-way exchanges.

PPT Version