Re: [88attendees] WPA2 Enterprise WiFi?

Warren Kumari <warren@kumari.net> Fri, 08 November 2013 20:17 UTC

Return-Path: <warren@kumari.net>
X-Original-To: 88attendees@ietfa.amsl.com
Delivered-To: 88attendees@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 92DCB21F9DFA for <88attendees@ietfa.amsl.com>; Fri, 8 Nov 2013 12:17:20 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -102.599
X-Spam-Level:
X-Spam-Status: No, score=-102.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id NPlgN9pkgPRH for <88attendees@ietfa.amsl.com>; Fri, 8 Nov 2013 12:17:13 -0800 (PST)
Received: from vimes.kumari.net (smtp1.kumari.net [204.194.22.1]) by ietfa.amsl.com (Postfix) with ESMTP id 8B83D21F9A3B for <88attendees@ietf.org>; Fri, 8 Nov 2013 12:17:12 -0800 (PST)
Received: from [31.130.224.155] (unknown [31.130.224.155]) by vimes.kumari.net (Postfix) with ESMTPSA id 3B86A1B400D3; Fri, 8 Nov 2013 15:17:11 -0500 (EST)
Content-Type: text/plain; charset="windows-1252"
Mime-Version: 1.0 (Mac OS X Mail 6.6 \(1510\))
From: Warren Kumari <warren@kumari.net>
In-Reply-To: <527D45DE.2010304@sidn.nl>
Date: Fri, 08 Nov 2013 12:17:10 -0800
Content-Transfer-Encoding: quoted-printable
Message-Id: <22B3888C-410F-4BA3-A26C-26E9F2387066@kumari.net>
References: <527D3AB4.40600@sidn.nl> <09EFC37F-CFBC-4573-9F44-BA1ECF81F896@kumari.net> <527D4436.9020806@sidn.nl> <CAATsVbbWzUMt0Dqyrq1gUGQ2a2ZBgYn4F_o=W0HfVi+HitysTQ@mail.gmail.com> <527D45DE.2010304@sidn.nl>
To: "Marco Davids (SIDN)" <marco.davids@sidn.nl>
X-Mailer: Apple Mail (2.1510)
Cc: Bill Fenner <fenner@fenron.com>, Warren Kumari <warren@kumari.net>, "88attendees@ietf.org" <88attendees@ietf.org>
Subject: Re: [88attendees] WPA2 Enterprise WiFi?
X-BeenThere: 88attendees@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: "Mailing list of IETF 88 attendees that have opted in to the list." <88attendees.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/88attendees>, <mailto:88attendees-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/88attendees>
List-Post: <mailto:88attendees@ietf.org>
List-Help: <mailto:88attendees-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/88attendees>, <mailto:88attendees-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 08 Nov 2013 20:17:20 -0000

On Nov 8, 2013, at 12:13 PM, "Marco Davids (SIDN)" <marco.davids@sidn.nl> wrote:

> On 08/11/13 12:11, Bill Fenner wrote:
> 
>> In what way is logging in with your own credentials different from
>> logging in with "ietf"/"ietf"?
> 
> I don't know, again I am not an expert on this matter.
> 
> If  "ietf/ietf" generates different keys for each person that uses it, I
> guess we're good.

Ah, yes. I understand now, we have been talking past each other…
WPA uses  802.1X EAPOL-Key  packets to distribute per-session keys / there is a temporal key / hand wave hand wave. Every securely gets thier own key...

W

> 
> --
> Marco
> 
> 
> 
> _______________________________________________
> 88attendees mailing list
> 88attendees@ietf.org
> https://www.ietf.org/mailman/listinfo/88attendees
> 

--
My memory is failing, so I changed my password to "incorrect".
That way, when I login with the wrong password the computer tells me… "Your password is incorrect".