1 Feb 2006 02:31
RE: Strawman -10
Salowey, Joe <jsalowey <at> cisco.com>
2006-02-01 01:31:19 GMT
2006-02-01 01:31:19 GMT
> -----Original Message----- > From: Rafa Marin Lopez [mailto:rafa <at> dif.um.es] > Sent: Tuesday, January 31, 2006 1:47 PM > To: Salowey, Joe > Cc: Bernard Aboba; eap <at> frascone.com > Subject: Re: [eap] Strawman -10 > > > >>I see. But I was wondering for example in the case of standalone > >>authenticator : will only MSK be available to lower layer > as usual or > >>both (MSK,EMSK) now? > >> > >> > >> > > > >[Joe] In order to preserve mode independence the EMSK must not be > >directly consumed by the lower layer. The lower layer must > not require > >direct access to the EMSK to function. However, the lower layer may > >rely upon keys derived from the EMSK. > > > > > Then my question is what layer is going to derive keys (i.e. > AMSK) from > EMSK? EAP layer?. > [Joe] I would say the EAP layer (if there is such a thing). If you don't like the EAP layer then it would be something like an EMSK(Continue reading)
RSS Feed