On 12/07/2011 13:33, "Sam Hartman" <[email protected]> wrote:

>>>>>> "Josh" == Josh Howlett <[email protected]> writes:
>
>
>    Josh> Isn't it sufficient for the acceptor to conclude success if the
>method
>    Josh> exposes the keying material and parameters per section 2 of
>RFC5247?
>    Josh> That's true for both full and passthrough authenticators.
>
>It needs to happen in consistent timing with the initiator.  I think
>Alan is right hear: the state machine is far simpler if you wait for the
>actual success message.  Note that since the RADIUS server is going to
>wait for that before sending you access accept, you don't have much of a
>choice.

Perhaps we're talking cross-purposes here; which success message are we
talk about here? I was assuming the EAP Success message.

Josh.




JANET(UK) is a trading name of The JNT Association, a company limited
by guarantee which is registered in England under No. 2881024 
and whose Registered Office is at Lumen House, Library Avenue,
Harwell Oxford, Didcot, Oxfordshire. OX11 0SG

_______________________________________________
abfab mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/abfab

Reply via email to