Sam Hartman wrote:
> I'd like to take a step back and ask why you'd ever want to channel-bind
> user-name in the first place? I guess the theory is that your EAP
> method supports channel binding but does not have a well-defined concept
> of peer ID or support identity protection/transporting meth
I have no problemdocumenting why we do not do so as an example of privacy in
sec cons
--
Sent from my Android phone with K-9 Mail. Please excuse my brevity.
Alan DeKok wrote:
Sam Hartman wrote:
> I'd like to take a step back and ask why you'd ever want to channel-bind
> user-name in the first