[radext] #153: Section 2.8 Access-Info

"radext issue tracker" <trac+radext@trac.tools.ietf.org> Sat, 04 May 2013 22:59 UTC

Return-Path: <trac+radext@trac.tools.ietf.org>
X-Original-To: radext@ietfa.amsl.com
Delivered-To: radext@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id A9F4B21F96FA for <radext@ietfa.amsl.com>; Sat, 4 May 2013 15:59:57 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -102.599
X-Spam-Level:
X-Spam-Status: No, score=-102.599 tagged_above=-999 required=5 tests=[AWL=0.000, BAYES_00=-2.599, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id kQ30rEdheSYT for <radext@ietfa.amsl.com>; Sat, 4 May 2013 15:53:03 -0700 (PDT)
Received: from grenache.tools.ietf.org (grenache.tools.ietf.org [IPv6:2a01:3f0:1:2::30]) by ietfa.amsl.com (Postfix) with ESMTP id E508021F9697 for <radext@ietf.org>; Sat, 4 May 2013 15:52:22 -0700 (PDT)
Received: from localhost ([127.0.0.1]:52486 helo=grenache.tools.ietf.org ident=www-data) by grenache.tools.ietf.org with esmtp (Exim 4.80) (envelope-from <trac+radext@trac.tools.ietf.org>) id 1UYlJR-0001Y7-JP; Sun, 05 May 2013 00:52:17 +0200
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: radext issue tracker <trac+radext@trac.tools.ietf.org>
X-Trac-Version: 0.12.3
Precedence: bulk
Auto-Submitted: auto-generated
X-Mailer: Trac 0.12.3, by Edgewall Software
To: draft-ietf-radext-ieee802ext@tools.ietf.org, bernard_aboba@hotmail.com
X-Trac-Project: radext
Date: Sat, 04 May 2013 22:52:17 -0000
X-URL: http://tools.ietf.org/radext/
X-Trac-Ticket-URL: http://wiki.tools.ietf.org/wg/radext/trac/ticket/153
Message-ID: <066.e99973544c7878635851fd28a6cf5689@trac.tools.ietf.org>
X-Trac-Ticket-ID: 153
X-SA-Exim-Connect-IP: 127.0.0.1
X-SA-Exim-Rcpt-To: draft-ietf-radext-ieee802ext@tools.ietf.org, bernard_aboba@hotmail.com, radext@ietf.org
X-SA-Exim-Mail-From: trac+radext@trac.tools.ietf.org
X-SA-Exim-Scanned: No (on grenache.tools.ietf.org); SAEximRunCond expanded to false
Resent-To: bernard_aboba@hotmail.com, j@w1.fi, jsalowey@cisco.com, mark@azu.ca, paul_congdon@hp.com
Resent-Message-Id: <20130504225302.E508021F9697@ietfa.amsl.com>
Resent-Date: Sat, 04 May 2013 15:52:22 -0700
Resent-From: trac+radext@trac.tools.ietf.org
Cc: radext@ietf.org
Subject: [radext] #153: Section 2.8 Access-Info
X-BeenThere: radext@ietf.org
X-Mailman-Version: 2.1.12
Reply-To: radext@ietf.org
List-Id: RADIUS EXTensions working group discussion list <radext.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/radext>, <mailto:radext-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/radext>
List-Post: <mailto:radext@ietf.org>
List-Help: <mailto:radext-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/radext>, <mailto:radext-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 04 May 2013 23:02:05 -0000

#153: Section 2.8 Access-Info

 The Access-Info Attribute is utilized by implementations of
       IEEE-802.1X [IEEE-802.1X] to specify the Access status information
       field within an Access Information Type Length Value Tuple (TLV)
       to be sent to the user within MACsec Key Agreement (MKA) or EAPoL-
       Announcement frames.

       A single Access-Info Attribute is permitted within a RADIUS
       Access-Accept, Access-Challenge, Access-Reject or Accounting-
       Request packet.

 [BA] The above paragraph seems to imply that the Access-Info Attribute
 could cause the Access status information to change during and after
 authentication.  It is unclear how supplicants would respond to such a
 change.  For example, the potential response to a change in MKA (which is
 authenticated) could be quite different from a change in an EAPoL-
 Announcement frame (which is not).  As a result, the desired behavior is
 unclear.

-- 
-------------------------------------+-------------------------------------
 Reporter:                           |      Owner:  draft-ietf-radext-
  bernard_aboba@hotmail.com          |  ieee802ext@tools.ietf.org
     Type:  defect                   |     Status:  new
 Priority:  critical                 |  Milestone:  milestone1
Component:  ieee802ext               |    Version:  1.0
 Severity:  In WG Last Call          |   Keywords:
-------------------------------------+-------------------------------------

Ticket URL: <http://wiki.tools.ietf.org/wg/radext/trac/ticket/153>
radext <http://tools.ietf.org/radext/>