Bernard Aboba wrote:
In the meantime, are you saying that the Message-Authenticator attribute MUST be included in any message (Request, Challenge, Accept/Reject) containing attributes defined in this document, and that a RADIUS client or server receiving a message with the attribute MUST check it and MUST silently discard a packet that fails the check?
I think that is what needs to be done.
I'm ok with this, assuming that the appropriate text can be developed and posted.
I'm OK with this too.
--Jari
-- to unsubscribe send a message to radiusext-request@ops.ietf.org with the word 'unsubscribe' in a single line as the message text body. archive: <http://psg.com/lists/radiusext/>