John,

This may be a side note in the TLS discussion, but just looked at the below 
list:

> Looking at the other active documents in the EMU WG:
> 
> draft-ietf-emu-rfc5448bis
> draft-ietf-emu-aka-pfs
> […]
> None of them has a protected alternate indication of success […]

And it seems to me that RFC 4187 (EAP-AKA) does have protected result 
indicators (see Section 12.8). RFC 5448 (EAP-AKA’) is a diff to EAP-AKA, and it 
doesn’t add or remove of any of that. RFC5448bis even has a table (Section 3.5) 
that shows when AT_RESULT_IND, AT_NOTIFICATION, AT_ENCR_DATA, etc and 
EAP-Request/Response/AKA-Notification can be used. That table matches my 
understanding of RFC 4187 result indicators usage. I also checked an open 
source implementation and it seemed to be doing these functions.

As for the PFS extension, that shouldn’t remove any of the underlying features 
either.

(But I could easily have misunderstood or forgotten something. Happy to learn 
or fix things if so.)

Jari

_______________________________________________
Emu mailing list
Emu@ietf.org
https://www.ietf.org/mailman/listinfo/emu

Reply via email to