[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: Thoughts on Requirements for RADIUS crypto-agility



Glen Zorn stated:

"I have no idea what you mean: does the replay protection stuff just apply to the crypto algorithm negotiation or RADIUS as a whole?"

Item 3 refers to replay protection of RADIUS messages, so that would appear to be covered:

"3. Proposals MUST support replay protection.  It has been noted that
existing mechanisms for replay protection of Accounting-Request/Response,
CoA-Request/Response and Disconnect-Request/Response messages are
inadequate."

Are you suggesting that replay protection of crypto-algorithm negotiation be added?



--
to unsubscribe send a message to radiusext-request@ops.ietf.org with
the word 'unsubscribe' in a single line as the message text body.
archive: <http://psg.com/lists/radiusext/>