Hi Alexander,

We will update the implementation and clarify the use of channel binding in EAP-EDHOC in the next version of the draft.

Thank you.

Best regards,

Dan.

El 15/7/25 a las 7:37, Alexander Clouter escribió:
Hello,

On Mon, 14 Jul 2025, at 10:28, FRANCISCO LOPEZ GOMEZ wrote:
Our implementation (University of Murcia) is available and can be
tested at: 
https://urldefense.com/v3/__https://gitlab.com/franciscolopezg/eap-edhoc-testbed.git__;!!D9dNQwwGXtA!XlJGMVKC6lUMqN1jh1yvApF1s0VHOR2EiFPImMZZr7Q9f0m_gbYXep9CWIwlQwYuRRj_-SV_7hMzO8obvKFYS9lsEE3dxeKC$
 .
This repository includes some proof-of-concept implementations of the
EAP-EDHOC method, a Dockerized test environment, and instructions to
reproduce the tests.
Maybe important, the implementation[1] was made using 
draft-ietf-emu-eap-edhoc-00 and since then the channel-binding section was 
added.

Can anyone chip in and state if the channel binding with validation was ever 
implemented anywhere?

The draft states "the channel binding protocol defined in [RFC6677] must be 
transported after keying material" without anything material (to me) on how to 
actually go an do this as an implementer.

For example what is the actual process in doing "If the server detects a consistency 
error in the channel binding information contained in EAD_3" and how does a peer 
respond if it is upset?

Cheers

Alex

[1] 
https://urldefense.com/v3/__https://gitlab.com/franciscolopezg/eap-edhoc-testbed/-/blob/main/base/freeradius-server-3.2.3/src/modules/rlm_eap/types/rlm_eap_edhoc/eap_edhoc.h?ref_type=heads__;!!D9dNQwwGXtA!XlJGMVKC6lUMqN1jh1yvApF1s0VHOR2EiFPImMZZr7Q9f0m_gbYXep9CWIwlQwYuRRj_-SV_7hMzO8obvKFYS9lsEJnsW8ZG$

_______________________________________________
Emu mailing list -- [email protected]
To unsubscribe send an email to [email protected]

_______________________________________________
Emu mailing list -- [email protected]
To unsubscribe send an email to [email protected]

Reply via email to