Re: [Emu] Notes on session resumption with TLS-based EAP methods

2019-02-06 Thread John Mattsson
I think this is a very good discussion to have. Any problems with peer authentication would (at least in theory) affect pure EAP-TLS as well. RFC 5216 states that: RFC 5216: "While the EAP server SHOULD require peer authentication, this is not mandatory, since there are circumstances in which p

Re: [Emu] Notes on session resumption with TLS-based EAP methods

2019-02-06 Thread Alan DeKok
On Feb 6, 2019, at 3:54 AM, John Mattsson wrote: > > I think this is a very good discussion to have. Any problems with peer > authentication would (at least in theory) affect pure EAP-TLS as well. RFC > 5216 states that: > > RFC 5216: "While the EAP server SHOULD require peer authentication, t