Re: [Emu] Review of draft-clancy-emu-chbind-03

2008-11-03 Thread Charles Clancy
Bernard, Version v04 was just submitted and should address most of your comments. We added some clarifications to discuss the "lying NAS" vs "lying provider" problems. Really all we can reasonably validate is the last hop in a AAA proxy chain. In an enterprise network, that's the NAS. In a

[Emu] Review of draft-clancy-emu-chbind-03

2008-10-15 Thread Bernard Aboba
Wow. The EMU WG mail exploder seems to have badly mangled this email, so let's try again. snip snip = Food for the exploder snip snip = Thanks for the improvements in -03. Some additional comments: Se

[Emu] Review of draft-clancy-emu-chbind-03.txt

2008-10-15 Thread Bernard Aboba
Thanks for the improvements in -03. Some additional comments: Section 1 " A concrete example of this may be an IEEE 802.11 access point with a security association to a particular AAA server. While there may be some identity tied to that security association, there's no reason the ac