Re: [Emu] POST WGLC Comments draft-ietf-emu-eap-tls13

2019-11-07 Thread Alan DeKok
On Nov 7, 2019, at 12:30 PM, Owen Friel (ofriel) wrote: > [ofriel] TLS1.3 explicitly does not allow both PSK and certs simultaneously. > draft-ietf-tls-tls13-cert-with-extern-psk does, but that’s Experimental. I > don't think TLS with extern PSK is really intended for Web/Browser HTTPS >

Re: [Emu] POST WGLC Comments draft-ietf-emu-eap-tls13

2019-11-07 Thread Owen Friel (ofriel)
> -Original Message- > From: Emu On Behalf Of Joseph Salowey > Sent: 31 October 2019 04:45 > To: Alan DeKok > Cc: draft-ietf-emu-eap-tl...@ietf.org; John Mattsson > ; Michael Richardson > ; EMU WG > Subject: Re: [Emu] POST WGLC Comments draft-ietf-emu-eap-tls13 > > > > On Wed, Oct

Re: [Emu] EAP questions (RE: POST WGLC Comments draft-ietf-emu-eap-tls13)

2019-11-07 Thread Alan DeKok
On Nov 7, 2019, at 12:30 PM, Owen Friel (ofriel) wrote: >> [Joe] Is EAP Identity Synonymous with the NAI? > > [ofriel] I'd also like to definitively understand this. Neither RFC3748 or > RFC7542 are clear on this. Should this be an errata to clarify.. somewhere? The EAP Identity can largely

[Emu] EAP questions (RE: POST WGLC Comments draft-ietf-emu-eap-tls13)

2019-11-07 Thread Owen Friel (ofriel)
> -Original Message- > From: Emu On Behalf Of Joseph Salowey > Sent: 03 November 2019 18:31 > To: Alan DeKok > Cc: draft-ietf-emu-eap-tl...@ietf.org; EMU WG ; John > Mattsson ; Michael > Richardson > Subject: Re: [Emu] POST WGLC Comments draft-ietf-emu-eap-tls13 > > > On Fri, Nov 1,

[Emu] TLS1.3 and TEAP (RE: POST WGLC Comments draft-ietf-emu-eap-tls13)

2019-11-07 Thread Owen Friel (ofriel)
> -Original Message- > From: Emu On Behalf Of Alan DeKok > Sent: 01 November 2019 11:08 > To: John Mattsson > Cc: draft-ietf-emu-eap-tl...@ietf.org; Michael Richardson > ; John Mattsson > ; EMU WG > Subject: Re: [Emu] POST WGLC Comments draft-ietf-emu-eap-tls13 > > On Nov 1, 2019,

Re: [Emu] TLS1.3 and TEAP (RE: POST WGLC Comments draft-ietf-emu-eap-tls13)

2019-11-07 Thread Alan DeKok
On Nov 7, 2019, at 12:30 PM, Owen Friel (ofriel) wrote: > > > [ofriel] Question to the WG: should the TEAP changes for TLS1.3 be included > in draft-dekok-emu-tls-eap-types? If they're minor, it may be OK. > Or in draft-lear-eap-teap-brski - and note that the title is changed to " > TEAP

[Emu] BRSKI-TEAP vs regular connection (was Re: EAP questions ...)

2019-11-07 Thread Michael Richardson
On 2019-11-07 12:43 p.m., Alan DeKok wrote: >> E.g. we have documented in >> https://tools.ietf.org/html/draft-lear-eap-teap-brski-05#section-5 that: >> >> " A device that has not been bootstrapped at all SHOULD send an >> identity of teap-bootstrap@TBD1. " >> >> If we register that