Re: [88attendees] WPA2 Enterprise WiFi?

joel jaeggli <joelja@gmail.com> Fri, 08 November 2013 20:23 UTC

Return-Path: <joelja@gmail.com>
X-Original-To: 88attendees@ietfa.amsl.com
Delivered-To: 88attendees@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id C30D811E8224 for <88attendees@ietfa.amsl.com>; Fri, 8 Nov 2013 12:23:36 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.599
X-Spam-Level:
X-Spam-Status: No, score=-2.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id aF70z8R9HZvH for <88attendees@ietfa.amsl.com>; Fri, 8 Nov 2013 12:23:36 -0800 (PST)
Received: from mail-pa0-x236.google.com (mail-pa0-x236.google.com [IPv6:2607:f8b0:400e:c03::236]) by ietfa.amsl.com (Postfix) with ESMTP id EE66D11E823A for <88attendees@ietf.org>; Fri, 8 Nov 2013 12:23:27 -0800 (PST)
Received: by mail-pa0-f54.google.com with SMTP id fa1so2689863pad.41 for <88attendees@ietf.org>; Fri, 08 Nov 2013 12:23:27 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=content-type:mime-version:subject:from:in-reply-to:date:cc :message-id:references:to; bh=swYO++UPrwZM9xYpJYUHnpVdezdV31apZlUFRjBypC8=; b=Vo723uI+FJ+UkdJ1kFGw1yKRaup+V3wpo/db8OfBZoqnWwUpG1FBKxAuCMBw7cp/7U mRj3NCt2W0tEmN7pGcgcNfIf5M/V83S46kimNNYl29U1YpkrQCnJ8xMNCGxAnXghD+r/ 9jLamIfdHRWYiTMtkFWnI35E8fjpidETgg6nhZXM2Gw8EAmQBB7+dccJp/k14ZUsXXHV bljRkSDoCTR2d2UedIlxWz4SSCXef4fj092lsBmbuvLy24Oh6HE1/Wzys3BRtsDtmP+j ZnIOr8prLoDs198P2dIN5NlhDeb7bTwrdUClb2KJAbyTVYPVh+EchXcCyhiMvg7wbY1U fwUw==
X-Received: by 10.68.233.135 with SMTP id tw7mr16816225pbc.112.1383942207867; Fri, 08 Nov 2013 12:23:27 -0800 (PST)
Received: from dhcp-bc20.meeting.ietf.org (dhcp-bc20.meeting.ietf.org. [31.133.188.32]) by mx.google.com with ESMTPSA id rv9sm14026477pbc.4.2013.11.08.12.23.25 for <multiple recipients> (version=TLSv1 cipher=ECDHE-RSA-RC4-SHA bits=128/128); Fri, 08 Nov 2013 12:23:26 -0800 (PST)
Content-Type: multipart/signed; boundary="Apple-Mail=_8A2DC1D1-70F3-40BC-BE2E-2A428EAB6E39"; protocol="application/pgp-signature"; micalg="pgp-sha1"
Mime-Version: 1.0 (Mac OS X Mail 7.0 \(1816\))
From: joel jaeggli <joelja@gmail.com>
In-Reply-To: <CAO_RpcLywWaA4HQwt47C8nF95qyNrYYx16V9zUEk4anNTYZCcg@mail.gmail.com>
Date: Fri, 08 Nov 2013 12:23:16 -0800
Message-Id: <A43187D8-51B3-4727-B160-1EB6A2D6D39A@gmail.com>
References: <527D3AB4.40600@sidn.nl> <0E3993B6-CBCF-467B-B5D6-A0BCE581FBD4@gmail.com> <527D451B.7040409@sidn.nl> <CAO_RpcLywWaA4HQwt47C8nF95qyNrYYx16V9zUEk4anNTYZCcg@mail.gmail.com>
To: chelliot@pobox.com
X-Mailer: Apple Mail (2.1816)
Cc: "88attendees@ietf.org" <88attendees@ietf.org>, "Marco Davids (SIDN)" <marco.davids@sidn.nl>
Subject: Re: [88attendees] WPA2 Enterprise WiFi?
X-BeenThere: 88attendees@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: "Mailing list of IETF 88 attendees that have opted in to the list." <88attendees.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/88attendees>, <mailto:88attendees-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/88attendees>
List-Post: <mailto:88attendees@ietf.org>
List-Help: <mailto:88attendees-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/88attendees>, <mailto:88attendees-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 08 Nov 2013 20:23:36 -0000

yeah my bad.

On Nov 8, 2013, at 12:17 PM, Chris Elliott <chelliot@pobox.com> wrote:

> Marco,
> 
> Joel was using outdated data. We indeed did hack free radius to accept any
> credentials years ago, but we are using radiator now for authentication,
> and it only accepts ietf/ietf as the credentials.
> 
> Chris.
> 
> 
> On Fri, Nov 8, 2013 at 12:10 PM, Marco Davids (SIDN)
> <marco.davids@sidn.nl>wrote:
> 
>> -----BEGIN PGP SIGNED MESSAGE-----
>> Hash: SHA1
>> 
>> On 08/11/13 12:00, joel jaeggli wrote:
>> 
>>> wpa2 enterprise is in fact deployed at the IETF.
>>> 
>>> ietf.1x and ietf-a.1x
>>> 
>>> The radius server that supports the .1x ssids accepts any
>>> credentials as valid.
>> 
>> Is that so? So I can use whatever random strings I want, not just
>> 'ietf,ietf' ? But that's fantastic (and cleverly done).
>> 
>> (Now I finally understand why the SSID is .1x  ;-)
>> 
>> Thanks
>> 
>> - --
>> Marco
>> 
>> -----BEGIN PGP SIGNATURE-----
>> Version: GnuPG/MacGPG2 v2.0.17 (Darwin)
>> Comment: GPGTools - http://gpgtools.org
>> Comment: Using GnuPG with Thunderbird - http://www.enigmail.net/
>> 
>> iEYEARECAAYFAlJ9RRoACgkQ0dvyGJ94G1IvNACfa4CBTA9zPOqCF9YAzycuwnNx
>> UaYAoKMx9r7P7tpKtQWkE3GAoXj4TZaO
>> =qP1X
>> -----END PGP SIGNATURE-----
>> _______________________________________________
>> 88attendees mailing list
>> 88attendees@ietf.org
>> https://www.ietf.org/mailman/listinfo/88attendees
>> 
> 
> 
> 
> -- 
> Chris Elliott
> chelliot@pobox.com