Handover Keying Architecture Design
RFC 6697, “Handover Keying Architecture Design”, is an Informational document published in July 2012 by G. Zorn, Q. Wu, T. Taylor, Y. Nir, K. Hoeper, S. Decugis. The canonical text is published by the RFC Editor.
Abstract
The Handover Keying (HOKEY) Working Group seeks to minimize handover delay due to authentication when a peer moves from one point of attachment to another. Work has progressed on two different approaches to reduce handover delay: early authentication (so that authentication does not need to be performed during handover), and reuse of cryptographic material generated during an initial authentication to save time during re-authentication. A basic assumption is that the mobile host or "peer" is initially authenticated using the Extensible Authentication Protocol (EAP), executed between the peer and an EAP server as defined in RFC 3748.
This document defines the HOKEY architecture. Specifically, it describes design objectives, the functional environment within which handover keying operates, the functions to be performed by the HOKEY architecture itself, and the assignment of those functions to architectural components. It goes on to illustrate the operation of the architecture within various deployment scenarios that are described more fully in other documents produced by the HOKEY Working Group. This document is not an Internet Standards Track specification; it is published for informational purposes.
What “Informational” means
Published for the general information of the community. It does not define an IETF standard and carries no standards-track status.
The canonical text of RFC 6697 is hosted at rfc-editor.org. Available in TXT,HTML.
- RFC 6696 EAP Extensions for the EAP Re-authentication Protocol
- RFC 6698 The DNS-Based Authentication of Named Entities Transport Layer Security Protocol: TLSA
- RFC 6695 Methods to Convey Forward Error Correction Framework Configuration Information
- RFC 6694 The "about" URI Scheme
- RFC 6693 Probabilistic Routing Protocol for Intermittently Connected Networks
- RFC 6701 Sanctions Available for Application to Violators of IETF IPR Policy
- RFC 6692 Source Ports in Abuse Reporting Format Reports
- RFC 6702 Promoting Compliance with Intellectual Property Rights Disclosure Rules