Re: [HOKEY] WGLC on draft-ietf-hokey-erp-aak

Qin Wu <sunseawq@huawei.com> Mon, 16 May 2011 03:05 UTC

Return-Path: <sunseawq@huawei.com>
X-Original-To: hokey@ietfa.amsl.com
Delivered-To: hokey@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 3113EE0723; Sun, 15 May 2011 20:05:09 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.307
X-Spam-Level:
X-Spam-Status: No, score=-6.307 tagged_above=-999 required=5 tests=[AWL=0.292, BAYES_00=-2.599, RCVD_IN_DNSWL_MED=-4]
Received: from mail.ietf.org ([64.170.98.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id d5pJWxoQCeae; Sun, 15 May 2011 20:05:08 -0700 (PDT)
Received: from szxga04-in.huawei.com (szxga04-in.huawei.com [119.145.14.67]) by ietfa.amsl.com (Postfix) with ESMTP id 1DAB5E0721; Sun, 15 May 2011 20:05:08 -0700 (PDT)
Received: from huawei.com (szxga04-in [172.24.2.12]) by szxga04-in.huawei.com (iPlanet Messaging Server 5.2 HotFix 2.14 (built Aug 8 2006)) with ESMTP id <0LL900J8UPWI62@szxga04-in.huawei.com>; Mon, 16 May 2011 11:05:06 +0800 (CST)
Received: from huawei.com ([172.24.2.119]) by szxga04-in.huawei.com (iPlanet Messaging Server 5.2 HotFix 2.14 (built Aug 8 2006)) with ESMTP id <0LL9004IIPWI7P@szxga04-in.huawei.com>; Mon, 16 May 2011 11:05:06 +0800 (CST)
Received: from w53375 ([10.138.41.70]) by szxml06-in.huawei.com (iPlanet Messaging Server 5.2 HotFix 2.14 (built Aug 8 2006)) with ESMTPA id <0LL9001VRPWHUO@szxml06-in.huawei.com>; Mon, 16 May 2011 11:05:06 +0800 (CST)
Date: Mon, 16 May 2011 11:08:56 +0800
From: Qin Wu <sunseawq@huawei.com>
To: Glen Zorn <gwz@net-zen.net>
Message-id: <024b01cc1376$98550880$46298a0a@china.huawei.com>
MIME-version: 1.0
X-MIMEOLE: Produced By Microsoft MimeOLE V6.00.2900.3664
X-Mailer: Microsoft Outlook Express 6.00.2900.3664
Content-type: text/plain; charset=iso-8859-1
Content-transfer-encoding: 7BIT
X-Priority: 3
X-MSMail-priority: Normal
References: <4DC13C44.7070106@net-zen.net> <038001cc0ec3$5298d0e0$46298a0a@china.huawei.com> <4DCF727E.7050700@net-zen.net>
Cc: hokey-chairs@ietf.org, hokey@ietf.org, draft-ietf-hokey-erp-aak@tools.ietf.org
Subject: Re: [HOKEY] WGLC on draft-ietf-hokey-erp-aak
X-BeenThere: hokey@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: HOKEY WG Mailing List <hokey.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/hokey>, <mailto:hokey-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/hokey>
List-Post: <mailto:hokey@ietf.org>
List-Help: <mailto:hokey-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/hokey>, <mailto:hokey-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 16 May 2011 03:05:09 -0000

Hi,
----- Original Message ----- 
From: "Glen Zorn" <gwz@net-zen.net>
To: "Qin Wu" <sunseawq@huawei.com>
Cc: <hokey@ietf.org>rg>; <hokey-chairs@ietf.org>rg>; <draft-ietf-hokey-erp-aak@tools.ietf.org>
Sent: Sunday, May 15, 2011 2:28 PM
Subject: Re: [HOKEY] WGLC on draft-ietf-hokey-erp-aak


> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
> 
> On 5/10/2011 10:35 AM, Qin Wu wrote:
> 
>> Hi,
>> I read and support this work forward. 
>> Here is my comments belows:
>> 1. Abstract
>> [Qin]: The abstract is too long. I suggest to change from
>> "
>>    The Extensible Authentication Protocol (EAP) is a generic framework
>>    supporting multiple of authentication methods.
>> 
>>    The EAP Re-authentication Protocol (ERP) specifies extensions to EAP
>>    and the EAP keying hierarchy to support an EAP method-independent
>>    protocol for efficient re-authentication between the peer and an EAP
>>    re-authentication server through any authenticator.
>> 
>>    Authenticated Anticipatory Keying (AAK) is a method by which
>>    cryptographic keying material may be established prior to handover
>>    upon one or more candidate attachment points (CAPs).  AAK uses the
>>    AAA infrastructure for key transport.
>> 
>>    This document specifies the extensions necessary to enable AAK
>>    support in ERP.
>> "
>> to
>> "
>>    Authenticated Anticipatory Keying (AAK) is a method by which
>>    cryptographic keying material may be established prior to handover
>>    upon one or more candidate attachment points (CAPs).  AAK uses the
>>    AAA infrastructure for key transport.
>> 
>>    This document specifies the extensions necessary to enable AAK
>>    support in ERP.
>> "
> 
> Actually, I don't think that the Abstract is too long at all.

[Qin]: I just assume all the people who read this document are all familiar with EAP and ERP.
Maybe I am wrong.

>> Section 4 First Paragraph
>> "
>>    As an optimization of ERP, ERP/AAK uses key hierarchy similar to that
>>   of ERP.  
>> "
>>  [Qin]: Suggest to change "optimization" as "extension".
> 
> Agree, & also change "uses key" to "uses a key"

[Qin]: Yes. Good catch.

>> 
>> Section 4 Fist paragraph:
>> "
>> The hierarchy relationship is illustrated in Figure 2, below.
>> "
>> [Qin]: suggestion to change as:
>> "
>> The hierarchy relationship is illustrated in Figure 2 shown below.
> 
> Why?

[Qin]: I agree existing text is identical to proposed change, maybe not necessary to take new.

> ...
> 
>> 
>> Section 7 last setence:
>>    [Qin]: Remove the last sentence since we can resue the extisting AAA message.
> 
> What message did you have in mind?  I can't think of any that do what is
> necessary.

[Qin]: I think Diameter DEA/DER message can be reused. You don't think so?

> ...
> -----BEGIN PGP SIGNATURE-----
> Version: GnuPG v2.0.14 (MingW32)
> Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/
> 
> iQEcBAEBAgAGBQJNz3J+AAoJEG4XtfZZU7RfheYIAIFhMJ6tP0cf+WZLzMeZML2b
> AO9yhaqbouCCxpCdXUGHLwrTOtyKEyXrXA62ZUHfh2LtKbR1B/K7SCp/nW3e2hEk
> ewItOuyfGEgQN4KoPQhL9FakfVPQFezEKse3TdwV4x7v9/foASV8U5CW0wFXI5sj
> UZColU5PtvKEGRK7/yUcxDie9kA0xwCPsrLzxdRfdnQjMBGuOmexwK4fpe9i4K7d
> ZVyVs9ey7DEgujFmOJ7OnBIiTC6OnarXkWelN3cvliGtjNekc/VM55J7tqUWqcRl
> 6R0RvRe/ok20X8DseuWl2aLFKA8A7QvES0LzecblHSnw8auN/OGUIpFqRhJ2EvA=
> =N0xC
> -----END PGP SIGNATURE-----
>