Re: Proposal for revised charter
Jari Arkko <[email protected]> Tue, 18 Apr 2006 13:28:08 +0300
| Newsgroups | gmane.ietf.mobike |
|---|---|
| Message-ID | <[email protected]> |
Yaron Sheffer wrote: >2. Short-term credentials assigned by one gateway, to allow a client to >connect to another gateway without performing full EAP-based authentication >(and entering a password). Although the need to connect to multiple IPsec >gateways is not limited to the mobility case, it is amplified by mobility. >For example, some of the gateways may not be accessible through different >access methods, e.g. cellular/GPRS. > > MOBIKE was designed to handle the case where communication is between the same peers, but the peers' addresses change. When one of the peers change the problem becomes somewhat different. In IETF-65 there was a BoF, HOKEY, on handover keying, mainly focused on EAP-based access authentication. If you have needs for efficient handover from one SGW to another, it might be useful to work on your problem in the HOKEY space to ensure that IKEv2 EAP mode is one of the "accesses" where efficient handover works. --Jari