Re: proxed EAP and eduroam project

2008-02-19 Thread Stefan Winter
Hi, > unless using very old method like EAP-MD5. which is forbidden in the eduroam policy anyway. For the exact reason of not providing sufficient security (no mutual authentication). > looking to the future, RADSEC will be involved in 'beefing up' > the RADIUS to RADIUS communication channel.

Re: proxed EAP and eduroam project

2008-02-19 Thread inverse
On Feb 18, 2008 12:32 PM, <[EMAIL PROTECTED]> wrote: > Hi, > > cleartext? not really. the proxied traffic will be at least This regards EAP-TLS: I meant that at least the username is shown, and you can get additional information reading the attribute values. Other than that, everything else se

Re: proxed EAP and eduroam project

2008-02-18 Thread A . L . M . Buxey
Hi, > rather than a problem, this is a question. > I assume you know what eduroam is, but just in case: > What is eduroam several members of this list are involved in eduroam at sites worldwide. > What happens is that the EAP conversation traverls in cleartext across > the public internet (reall

Re: proxed EAP and eduroam project

2008-02-18 Thread inverse
On Feb 18, 2008 11:12 AM, Alan DeKok <[EMAIL PROTECTED]> wrote: > Yes. thanks - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: proxed EAP and eduroam project

2008-02-18 Thread Alan DeKok
inverse wrote: > Implementing it from my side (that of a university) has been rather trivial. > What happens is that the EAP conversation traverls in cleartext across > the public internet (really the inter-university networks). > I would assume that EAP-TLS is highly safe from this point of view,

proxed EAP and eduroam project

2008-02-18 Thread inverse
hi all, rather than a problem, this is a question. I assume you know what eduroam is, but just in case: What is eduroam eduroam which stands for Education Roaming, is a RADIUS-based infrastructure that uses 802.1X security technology to allow for inter-institutional roaming. Substitute institutio