Bernard Aboba wrote:
1. PANA must have a reliable transport option for some set of messages
2. Creating an unreliable transport with packet order preservation over
IP adds significant complexity due to the overhead needed to prevent DOS
attacks.
After some substantial discussion on the EAP and RADEXT WG lists, I think
we have concluded that since EAP is an ACK/NAK protocol, if the lower
layer transport provides for duplicate detection then it will also
provide for in-order delivery of EAP packets.
Thank you, this is rather significant. In fact, perhaps it should be a
part of an update to RFC3748.
- Mark
For example, RADIUS meets the ordering requirement even though it offers
only simple minded UDP transport, assuming that the RADIUS server
implements a duplicate detection cache as described in RFC 2865.
_______________________________________________
Pana mailing list
[email protected]
https://www1.ietf.org/mailman/listinfo/pana