2 Oct 2007 18:20
RE: Draft liaison response for IEEE 802.11u EAP method for emergency calls
Joseph Salowey (jsalowey <jsalowey <at> cisco.com>
2007-10-02 16:20:00 GMT
2007-10-02 16:20:00 GMT
> -----Original Message----- > From: Bernard Aboba [mailto:bernard_aboba <at> hotmail.com] > Sent: Monday, September 17, 2007 10:20 AM > To: Joseph Salowey (jsalowey); emu <at> ietf.org > Cc: ecrit-chairs <at> tools.ietf.org; Bernard_Aboba <at> hotmail.com > Subject: RE: Draft liaison response for IEEE 802.11u EAP > method for emergency calls > > It is not clear to me whether the requirements do in fact > prohibit server-side authentication. As you note, without > server-side authentication man-in-the-middle attacks are > possible; however, even with server-side authentication, > additional requirements may need to be imposed in order to > provide the desired level of security. > > Requirement #1 is "No Pre-configured trust relationship". > This could refer to pre-configuration of the server with > respect to the expected client credential (PSK or > certificate), or it could refer to pre-configuration of the > client with respect to the server, (such trust anchors). The > text seems focused on the former more than the latter. > Assuming that clients can be pre-configured with trust > anchors, then TLS-based EAP methods could meet the requirement. [Joe] I agree, that if "No pre-configured trust relationship" refers to configuration of client on the server then we are in a better position. However it seems that in you discussion below that the peer does not typically have enough information to validate the server. >(Continue reading)
RSS Feed