11 December, th IETF, AAA WG1 AAA Proxies draft-ietf-aaa-proxies-01.txt David Mitton
11 December, th IETF, AAA WG2 Proxy Issues draft-ietf-aaa-issues-04.txt - Section 6 Proxy Behavior Details State Retention Mechanisms Action List Define terms Investigate Proxy state AVPs Investigate End-to-End issues
11 December, th IETF, AAA WG3 Why are there proxies? Proxies are useful for several reasons: They can distribute administration of systems to a configurable grouping, including the maintenance of security associations, They can be used for concentration of requests from an number of co-located or distributed NAS equipment sets to a set of like user groups They can do value-added processing to the requests or responses They can used for load balancing, A complex network will have multiple authentication sources, they can sort requests and forward towards the correct target
11 December, th IETF, AAA WG4 Types of Proxies Routing Proxies Policy Proxies Broker Proxies Translation Gateways
11 December, th IETF, AAA WG5 Routing Proxies Forward requests to appropriate targets –NAI parse and server lookup –Aggregate management for multiple NAS POP –Can be security holder for multiple NASes –Can be stateless
11 December, th IETF, AAA WG6 Policy Proxies Value added management using AAA stream Often used to manage dynamic resource allocation across NASes –eg. Call control center, port balancing
11 December, th IETF, AAA WG7 Broker Proxies A go-between for administrative domains –matches a request from an access ISP with the provider network –subscribed services; each party signs up, service aggreement in place –security information for contact points
11 December, th IETF, AAA WG8 State Taxonomy Issues often bring up “state” –Message State - getting the message to your peer –Transaction State - tracking the request and response –Session State - tracking the active session –Global State - tracking sessions across multiple sources
11 December, th IETF, AAA WG9 Problems that Proxies bring up Transactional Reliability - Acks and feedback at some level Failover and Recovery management Graceful Shutdown Congestion Potential
11 December, th IETF, AAA WG10 More Proxy Problems Integrity of Accounting Data Visibility of data Message Filtering between Admin Domains
11 December, th IETF, AAA WG11 Summary Please comment on draft-ietf-aaa-proxies-01.txt Currently on