RE: [HOKEY] Review of draft-gaonkar-radext-erp-attrs-02.txt

"Narayanan, Vidya" <vidyan@qualcomm.com> Fri, 11 January 2008 06:21 UTC

Return-path: <hokey-bounces@ietf.org>
Received: from [127.0.0.1] (helo=stiedprmman1.va.neustar.com) by megatron.ietf.org with esmtp (Exim 4.43) id 1JDDGO-0008SD-SE; Fri, 11 Jan 2008 01:21:08 -0500
Received: from [10.91.34.44] (helo=ietf-mx.ietf.org) by megatron.ietf.org with esmtp (Exim 4.43) id 1JDDGM-0008S7-L5 for hokey@ietf.org; Fri, 11 Jan 2008 01:21:06 -0500
Received: from wolverine01.qualcomm.com ([199.106.114.254]) by ietf-mx.ietf.org with esmtp (Exim 4.43) id 1JDDGM-0006v5-Ab for hokey@ietf.org; Fri, 11 Jan 2008 01:21:06 -0500
DomainKey-Signature: s=qcdkim; d=qualcomm.com; c=nofws; q=dns; h=X-IronPort-AV:Received:Received:Received:Received: X-MimeOLE:Content-class:MIME-Version:Content-Type: Content-Transfer-Encoding:Subject:Date:Message-ID: In-Reply-To:X-MS-Has-Attach:X-MS-TNEF-Correlator: Thread-Topic:Thread-Index:References:From:To:Cc: X-OriginalArrivalTime; b=RloAdBg6qK+QE1aYdEc2/NeT0zuINycIyg0UFUcYxEbWihgTmfSjxNzV FN3pQ/adEwvfP+jBm3QLatGMLNNkpLmIxji8daYcZgyIzXzA0nkbZSzur 7uDIbUX/NPxXhMU7QPVMYFMNsMUkgEMu8aGXyAwpC9ieMx6dasiQsLJhQ k=;
X-IronPort-AV: E=McAfee;i="5100,188,5204"; a="476532"
Received: from ithilien.qualcomm.com ([129.46.51.59]) by wolverine01.qualcomm.com with ESMTP/TLS/DHE-RSA-AES256-SHA; 10 Jan 2008 22:21:05 -0800
Received: from msgtransport02.qualcomm.com (msgtransport02.qualcomm.com [129.46.61.151]) by ithilien.qualcomm.com (8.14.1/8.12.5/1.0) with ESMTP id m0B6L5HD007886 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=FAIL); Thu, 10 Jan 2008 22:21:05 -0800
Received: from SANEXCAS03.na.qualcomm.com (sanexcas03.qualcomm.com [172.30.32.65]) by msgtransport02.qualcomm.com (8.14.1/8.14.2/1.0) with ESMTP id m0B6L4qp019262; Thu, 10 Jan 2008 22:21:04 -0800
Received: from NAEX13.na.qualcomm.com ([129.46.51.248]) by SANEXCAS03.na.qualcomm.com with Microsoft SMTPSVC(6.0.3790.3959); Thu, 10 Jan 2008 22:21:04 -0800
X-MimeOLE: Produced By Microsoft Exchange V6.5
Content-class: urn:content-classes:message
MIME-Version: 1.0
Content-Type: text/plain; charset="US-ASCII"
Content-Transfer-Encoding: quoted-printable
Subject: RE: [HOKEY] Review of draft-gaonkar-radext-erp-attrs-02.txt
Date: Thu, 10 Jan 2008 22:20:27 -0800
Message-ID: <C24CB51D5AA800449982D9BCB9032513CF4991@NAEX13.na.qualcomm.com>
In-Reply-To: <478708BE.1020805@deployingradius.com>
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
Thread-Topic: [HOKEY] Review of draft-gaonkar-radext-erp-attrs-02.txt
Thread-Index: AchUGTL3Lt8mi2Y2TveKaIwPKVY72gAAILvQ
References: <477D1029.2060502@deployingradius.com> <4725.69.12.173.8.1199462106.squirrel@www.trepanning.net> <477E65AE.3090003@qualcomm.com> <2069.69.12.173.8.1199475463.squirrel@www.trepanning.net> <477ED21D.9010301@qualcomm.com> <1608.69.12.173.8.1199495480.squirrel@www.trepanning.net> <C24CB51D5AA800449982D9BCB9032513C22802@NAEX13.na.qualcomm.com> <4062.69.12.173.8.1199655622.squirrel@www.trepanning.net> <C24CB51D5AA800449982D9BCB9032513C22A67@NAEX13.na.qualcomm.com> <47843CFD.3040900@deployingradius.com> <C24CB51D5AA800449982D9BCB9032513CF47ED@NAEX13.na.qualcomm.com> <4785467D.1050607@deployingradius.com> <C24CB51D5AA800449982D9BCB9032513CF486 9@NAEX13.na. qualcomm.com> <7105.216.31.249.246.1199927549.squirrel@www.trepanning.net> <C24CB51D5AA800449982D9BCB9032513CF488D@NAEX13.na.qualcomm.com> <4785DEDC.7070707@deployingradius.com> <47867277.3040206@qualcomm.com> <4786FFA8.9010208@deployingradius.com> <C24CB51D5AA800449982D9BCB9032513CF4990@NAEX13.na.qualcomm.com> <478708BE.102080 5@deployingradius.com>
From: "Narayanan, Vidya" <vidyan@qualcomm.com>
To: Alan DeKok <aland@deployingradius.com>
X-OriginalArrivalTime: 11 Jan 2008 06:21:04.0448 (UTC) FILETIME=[24DE2400:01C8541A]
X-Spam-Score: 0.0 (/)
X-Scan-Signature: e5ba305d0e64821bf3d8bc5d3bb07228
Cc: hokey@ietf.org
X-BeenThere: hokey@ietf.org
X-Mailman-Version: 2.1.5
Precedence: list
List-Id: HOKEY WG Mailing List <hokey.ietf.org>
List-Unsubscribe: <https://www1.ietf.org/mailman/listinfo/hokey>, <mailto:hokey-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www1.ietf.org/pipermail/hokey>
List-Post: <mailto:hokey@ietf.org>
List-Help: <mailto:hokey-request@ietf.org?subject=help>
List-Subscribe: <https://www1.ietf.org/mailman/listinfo/hokey>, <mailto:hokey-request@ietf.org?subject=subscribe>
Errors-To: hokey-bounces@ietf.org

 

> -----Original Message-----
> From: Alan DeKok [mailto:aland@deployingradius.com] 
> Sent: Thursday, January 10, 2008 10:12 PM
> To: Narayanan, Vidya
> Cc: Dondeti, Lakshminath; hokey@ietf.org
> Subject: Re: [HOKEY] Review of draft-gaonkar-radext-erp-attrs-02.txt
> 
> Narayanan, Vidya wrote:
> > Could it be that you are talking about PAP?  I don't understand 
> > how/why credentials may be exposed to intermediate parties 
> in the case of EAP.
> 
>   Yes.
> 
>   I was addressing the comment that exposing credentials was 
> a problem, presumably from a non-technical standpoint 
> (security, policies, etc.)
> 
>   Current accepted practice shows otherwise.
> 
>   Alan DeKok.


You are not serious that we should be basing our future designs on how
PAP works, are you?  If so, why move to EAP? If PAP is so acceptable, we
have nothing to do.  The IETF can shut down all work in the area of
access authentication. 

Vidya

_______________________________________________
HOKEY mailing list
HOKEY@ietf.org
https://www1.ietf.org/mailman/listinfo/hokey