On Tue, 22 Aug 2023 at 17:57, <internet-dra...@ietf.org> wrote:

>
> A New Internet-Draft is available from the on-line Internet-Drafts
> directories. This Internet-Draft is a work item of the EAP Method Update
> (EMU)
> WG of the IETF.
>
>    Title           : Tunnel Extensible Authentication Protocol (TEAP)
> Version 1
>    Author          : Alan DeKok
>    Filename        : draft-ietf-emu-rfc7170bis-13.txt
>

I have one small suggestion.

Section  5.2. Intermediate Compound Key Derivations, paragraph 2 says:

When a particular authentication method does not provide key material (such
> as with password exchange) then a special "all zero" IMSK is used as
> described below.


Then in the same section and later in section 5.3, the draft says:

If no inner EAP authentication method is run then no EMSK or MSK will be
> generated


I've created a pull request that updates the 'EAP authentication' part to
say 'inner authentication' so that in case there's an inner method (perhaps
provisioning?)  that's not EAP but that can provide keying material, the
text won't be too restrictive.

https://github.com/emu-wg/rfc7170bis/pull/26

-- 
Heikki Vatiainen
h...@radiatorsoftware.com
_______________________________________________
Emu mailing list
Emu@ietf.org
https://www.ietf.org/mailman/listinfo/emu

Reply via email to