Presentation is loading. Please wait.

Presentation is loading. Please wait.

EAP Channel Bindings TF-MNM Lyon, February 16, 2011 Alan DeKok FreeRADIUS.

Similar presentations


Presentation on theme: "EAP Channel Bindings TF-MNM Lyon, February 16, 2011 Alan DeKok FreeRADIUS."— Presentation transcript:

1 EAP Channel Bindings TF-MNM Lyon, February 16, 2011 Alan DeKok FreeRADIUS

2 TF-MNM Lyon 2 AAA The problem AAA

3 TF-MNM Lyon 3 Its all lies NAS can lie to end user $0.02 per minute (really $0.10) Visited provider can lie to home server They used 10 hours (really 10 min)

4 TF-MNM Lyon 4 Solution Tell everyone what everyone else said In a secure fashion

5 TF-MNM Lyon 5 AAA The Solution AAA The NAS told me X I told the user X

6 TF-MNM Lyon 6 How it works Define a TLV in EAP to transport data Likely RADIUS RADIUS inside of EAP inside of TTLS inside of EAP inside of RADIUS Its a bit of a miracle that it works at all

7 TF-MNM Lyon 7 Security Exchange information after user has been authenticated Using keys derived from the EAP session Ensures authenticity and integrity of the data

8 TF-MNM Lyon 8 Benefits Increases the usefulness of roaming I dont know who the NAS is, but hes asking to charge the user $0.02/min, and the user has agreed.

9 TF-MNM Lyon 9 Questions?


Download ppt "EAP Channel Bindings TF-MNM Lyon, February 16, 2011 Alan DeKok FreeRADIUS."

Similar presentations


Ads by Google