Hi,

hi daniele


>freeradius is not responsible for the rekeying. rekeying happens at the
>link where some sort of encryption takes place. there is no encryption
>between the radius server and the radius clients (except of some
>attribute hiding, but it has nothing to do with all this)

>please point out the context, MPPE is used in various places.

the environment is 802.1x access in a wireless networks with EAP-TLS
with MPPE.
Probably now I have understand:
Freeradius after the TLS handshake derive the MPPE keys from the key
material of the handshake and send this keys to the AP.
The client derives this key itself, and the AP and client are
responsable for the rekeying, this rekeying happen every packet that the
AP and the client exchange.

It's all exact?

But if it is, when a packet is lost what's appens?

Thanks and I hope this is not too off topic

Daniele Brevi



- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to