On Feb 6, 2021, at 8:22 PM, Joseph Salowey <[email protected]> wrote:
> 1. Please respond to the list if you support adding explicit result 
> indications of success and failure from the EAP Server to the EAP Peer in 
> EAP-TLS 1.3.  If you object please respond to the list indicating why.

  I support it.

> 2. Please respond to the list if you support using TLS close_notify alert for 
> a success indication and TLS error alert for a failure indication.  If you 
> object please respond to the list indicating why.  

  I support the TLS error alert for a failure indication.

  I would prefer sending one byte of application data instead of close_notify.  
For the simple reason that it better unifies the code paths for all TLS-based 
EAP methods.   That being said, we definitely need *a* protected success 
indication.

  Alan DeKok.

_______________________________________________
Emu mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/emu

Reply via email to