[radext] I-D Action: draft-ietf-radext-dtls-07.txt

Wed, 09 October 2013 18:17 UTC

A New Internet-Draft is available from the on-line Internet-Drafts directories.
 This draft is a work item of the RADIUS EXTensions Working Group of the IETF.

	Title           : DTLS as a Transport Layer for RADIUS
	Author(s)       : Alan DeKok
	Filename        : draft-ietf-radext-dtls-07.txt
	Pages           : 23
	Date            : 2013-10-09

   The RADIUS protocol [RFC2865] has limited support for authentication
   and encryption of RADIUS packets.  The protocol transports data "in
   the clear", although some parts of the packets can have "obfuscated"
   content.  Packets may be replayed verbatim by an attacker, and
   client-server authentication is based on fixed shared secrets.  This
   document specifies how the Datagram Transport Layer Security (DTLS)
   protocol may be used as a fix for these problems.  It also describes
   how implementations of this proposal can co-exist with current RADIUS

