A short follow-up on my own review:
I wrote:
> "
> Pre-Shared Key (PSK) authentication SHALL NOT be used except
>for resumption.
> "
> What you want to say that that EAP-TLS MUST NOT use external PSKs. I wonder
> why you want to rule that use case out? It is a perfectly fine use case for
>
Hi all,
This has probably been discussed extensively in the EMU group. I am sorry to
bring it up again but I believe this is a bad design decision. I raised it in
my short review just sent to the list but I believe it is worthwhile to point
it out separately.
draft-ietf-emu-eap-tls13 introduce
Hi all,
I took a quick look at the -09 draft.
Here are a few comments.
1. Introduction
The text in the introduction is confusing. To be honest, this document is
actually not needed because TLS allows you to negotiate version and features..
Obviously, the introduction does not say that and
On 6/8/20 2:25 PM, Hannes Tschofenig wrote:
> Hi all
> I read through draft-aura-eap-noob-08 during the call for adoption.
> The draft acknowledges that the concept of "onboarding" is a new term for an
> old concept, namely network access authentication. I like the draft from that
> point of vi
Reviewer: Dave Thaler
Review result: Ready with Issues
A marked up copy with my comments inline, including editorial nits not covered
in this email is at
https://www.microsoft.com/en-us/research/uploads/prod/2018/06/draft-ietf-emu-eap-noob-01.pdf
(a Word version is also available if requested, bu