Re: [HOKEY] REMINDER: WGLC on draft-ietf-hokey-erp-aak-04

Zhen Cao <zehn.cao@gmail.com> Tue, 23 August 2011 05:31 UTC

Return-Path: <zehn.cao@gmail.com>
X-Original-To: hokey@ietfa.amsl.com
Delivered-To: hokey@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 6902021F8AFC for <hokey@ietfa.amsl.com>; Mon, 22 Aug 2011 22:31:57 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.944
X-Spam-Level:
X-Spam-Status: No, score=-1.944 tagged_above=-999 required=5 tests=[AWL=-1.134, BAYES_00=-2.599, CN_BODY_35=0.339, MIME_CHARSET_FARAWAY=2.45, RCVD_IN_DNSWL_LOW=-1]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id CBQTWZI6Wk2v for <hokey@ietfa.amsl.com>; Mon, 22 Aug 2011 22:31:56 -0700 (PDT)
Received: from mail-iy0-f182.google.com (mail-iy0-f182.google.com [209.85.210.182]) by ietfa.amsl.com (Postfix) with ESMTP id 9143A21F8AF8 for <hokey@ietf.org>; Mon, 22 Aug 2011 22:31:56 -0700 (PDT)
Received: by iye1 with SMTP id 1so10706325iye.27 for <hokey@ietf.org>; Mon, 22 Aug 2011 22:33:02 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=gamma; h=mime-version:in-reply-to:references:date:message-id:subject:from:to :cc:content-type:content-transfer-encoding; bh=9KgSpT3jrX8t9pK3Qponu4oN6HG+nf5lSVlTv+mfbkQ=; b=xz8ft3lnt6osakmshx4rugD2qesFJM86zU+vbO0EWFbwVHC8BYvW0Tn0PAECZhU243 lG6KVlo/muiGYtCHgqTOLtbcn083EFC6i9UaWJvZ6x0x2QivOcnzpHy8veI4f4VqpQxQ TF8HQXEz8afdcXVLW6NVjMcza93K3oaXQPJOI=
MIME-Version: 1.0
Received: by 10.42.75.73 with SMTP id z9mr3173249icj.466.1314077582821; Mon, 22 Aug 2011 22:33:02 -0700 (PDT)
Received: by 10.42.196.136 with HTTP; Mon, 22 Aug 2011 22:33:02 -0700 (PDT)
In-Reply-To: <E2176179E7EE45108AD07ED086EB6FB6@china.huawei.com>
References: <00ec01cc58d5$5fc92d80$1f5b8880$@com> <E2176179E7EE45108AD07ED086EB6FB6@china.huawei.com>
Date: Tue, 23 Aug 2011 13:33:02 +0800
Message-ID: <CAProHAR_3wMdn8o4Gbe7YfMogj2JhddfKLmNnxeQ+LSPcVFd7g@mail.gmail.com>
From: Zhen Cao <zehn.cao@gmail.com>
To: Qin Wu <bill.wu@huawei.com>, young@h3c.com
Content-Type: text/plain; charset=GB2312
Content-Transfer-Encoding: quoted-printable
Cc: hokey@ietf.org
Subject: Re: [HOKEY] REMINDER: WGLC on draft-ietf-hokey-erp-aak-04
X-BeenThere: hokey@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: HOKEY WG Mailing List <hokey.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/hokey>, <mailto:hokey-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/hokey>
List-Post: <mailto:hokey@ietf.org>
List-Help: <mailto:hokey-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/hokey>, <mailto:hokey-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 23 Aug 2011 05:31:57 -0000

Richard, thank you for the comments.

See inline for the response.  We will update the draft to reflect some
of your comments. Thank you again.

2011/8/15 Qin Wu <bill.wu@huawei.com>om>:
> Please find below a review from Richard about draft-ietf-hokey-erp-aak-04.
> I forwarded this eMail to the Hokey list. If you reply, please maintain
> Richard' eMail address in the recipients list.
>
> Regards!
> -Qin

>
> Hi, All:
>
> I have read it and have the following comments.
> 1)  The document also specifies a method by which the SAP may send the
>   identities of neighboring attachment points to the peer in the EAP-
>   Initiate/Re-auth-Start message.
> [Richard]
> The are two kinds of CAP discovery model:The CAPs could be found by SAP or
> by MH.
> Why not specify both cases?

I think the case of CAP discovery via MH is out of scope of this document.

>
> 2) The peer sends an early-authentication request message (EAP-Initiate/
>   Re-auth with the 'E' flag set) containing the keyName-NAI, the NAS-
>   Identifier, rIK and sequence number.
> [Richard]
> The question is similar to the first one. It seemed that the text suggests
> the CAP list must be offered by the SAP.
> In the real application , It is possible that: The CAP list offered by the
> SAP is a reference or Mandatory.
> Also, MH could have a CAP list by itself and may refer or use the CAP list
> provided by the SAP.
> I suggest the draft would consider such cases and give some descriptions.

Same as the first question, I think we should keep it simple. And to
support you case, the SAP can leave the list blank and depends on the
EAP-Initiate/Re-auth packet to include the discovered CAP.

>
> 3)  This document only discusses the case of distributing the key to a
> single CAP.
> [Richard] it would let the draft only supports very limited scenarios. In
> some cases like unstable Wireless signal, the MH have to rapidly
> Shift among several CAPs. In order to ensure the user experience, it is
> possible that AAK is installed on the several
> CAPs before the MH's hand over.

We are designing a protocol to support the basic needs, and with good
extensibility .  In the previous versions of this draft, we have
indeed discussed the case of multiple CAP, but the working group
consensus is to have only one CAP in the scope. That's why we are
here.

>
> 4) The realm in the keyName-NAI field is used to locate the peer's ERP/AAK
> server
> [Richard] what would happen if the SAP does not know the ERP/AAK server
> indicated by the keyName-NAI

Inter-realm handover is not in scope.

>
> Regards
> Richard
>
> -----邮件原件-----
> 发件人: hokey-bounces@ietf.org [mailto:hokey-bounces@ietf.org] 代表 Glen
> Zorn
> 发送时间: 2011年8月4日 19:31
> 收件人: hokey@ietf.org
> 主题: [HOKEY] REMINDER: WGLC on draft-ietf-hokey-erp-aak-04
>
> At the hokey WG session during IETF 81 last week, the beginning of a three
> week Working Group Last Call for this document was announced.
> However, it appears that no-one mentioned this fact on the mailing list :-(,
> so the Last Call will be extended to 25 August.
>
> A URL for this document is
> http://www.ietf.org/id/draft-ietf-hokey-erp-aak-04.txt.  Please note that
> the draft is only 15 pages long, including boilerplate, so reading it should
> not be a major task.  Reply to this message with any comments (including
> statements such as "I read it and it's fine").  Thank you.
>
> _______________________________________________
> HOKEY mailing list
> HOKEY@ietf.org
> https://www.ietf.org/mailman/listinfo/hokey
>



-- 
Best regards,
Zhen