RFC 5077 ticket key derivation

Sam Hartman hartmans at mit.edu
Wed Apr 1 03:30:56 CEST 2015

>>>>> "Arran" == Arran Cudbard-Bell <a.cudbardb at freeradius.org> writes:

    >> On 31 Mar 2015, at 15:27, Alan DeKok <aland at deployingradius.com> wrote:

Well, they don't have to communicate, but an admin has to copy a file
around once.
Just like they do the private key.

However, hmac(private_key, admin_identifier) will work.

More information about the Freeradius-Devel mailing list