AW: : [DSA]: Generation of nonces

"Beck01, Wolfgang" <[email protected]> Tue, 28 Mar 2006 17:36:47 +0200
Newsgroups gmane.ietf.aaa
Message-ID <[email protected]>

Miguel wrote:
> The RADIUS draft was re-issued recently, and already tried to address 
> this issue by providing an known algorithm for creating and verifying 
> nonces. This hasn't been revised by the Security ADs yet, so it is 
> unknown at this stage if this clears that discuss or not. But just in 
> case it clears it, we may need to add similar wording to the Diameter 
> SIP application.
People didn't like that algorithm too much. The conclusion at the RADEXT
meeting in Dallas was to remove the RADIUS/Diameter client nonce
generation entirely. Without that mode, the security issue vanishes. The
AAA server itself can check the nonce validity using the scheme proposed
in RfC 2617 3.2.1

As RfC 2617 uses the challenge message not only to convey the nonce
but some capability information (like supported digest algorithms),
AAA client nonce generation requires additional manual configuration.

Removing that mode would improve the drafts.


Wolfgang

--
T-Systems
Next Generation IP Services and Systems
+49 6151 937 2863
Am Kavalleriesand 3
64295 Darmstadt
Germany