70 likes | 205 Views
Handover Key Hierarchy for Hierarchical Mobile IPv6 Mobility Management (HMIPv6). Hui Deng Zhen Cao. Problem statement. EAP may be used to authenticate the MN to the network in HMIPv6 How to re-authenticate the MN to the network when the MN handovers within one MAP or across different MAPs
E N D
Handover Key Hierarchy for Hierarchical Mobile IPv6 Mobility Management (HMIPv6) Hui Deng Zhen Cao
Problem statement • EAP may be used to authenticate the MN to the network in HMIPv6 • How to re-authenticate the MN to the network when the MN handovers within one MAP or across different MAPs • How to avoid a full EAP authentication exchange during each handover
MAP ADC … … AR AN AR AN MN MN MN MN Mapping between HMIPv6 and Handover keying architecture ADMSK LSAP_MK ADMSK: Access Domain Master Session Key LSAP_MK: Link Secure Association Protocol Master Key defined in draft-nakhjiri-aaa-hokey-ps-03
LSAP_MK2 LSAP_MK1 Handover within MAP:push mode
Work Item ? • Shall we consider handover keying to HMIPv6?
References • M. Nakhjiri, A Keying hierarchy for managing Wireless Handover security, [draft-nakhjiri-hokey-hierarchy-02], work in progress • M. Nakhjiri, AAA based Keying for Wireless Handovers: Problem Statement, [draft-nakhjiri-aaa-hokey-ps-03], work in progress