Why PANA? Need for network access authentication at higher layer when L2 that does not have authentication mechanism Not all L2 technologies support carrying EAP (not all IEEE 802 devices implement 802.1X) Assuming every L2 to carry EAP is not realistic Using PPP authentication for shared media is inefficient Need for higher layer authentication on top of L2 authentication Multi-layer authentication is widely used and common higher layer authentication carrier protocol needs to be standardized Web-based authentication that is widely used in hot-spot network access is known to be proprietary hack |