Proxy Chaining and Policy Implementation in Roaming
Bernard Aboba, John Vollbrecht · 1999
This document describes how proxy chaining and policy implementation can be supported in roaming systems.The mechanisms described in this document are in current use.However, as noted in the security considerations section, the techniques outlined in this document are vulnerable to attack from external parties as well as susceptible to fraud perpetrated by the roaming partners themselves.As a result, such methods are not suitable for wide-scale deployment on the Internet. TerminologyThis document frequently uses the following terms: Network Access ServerThe Network Access Server (NAS) is the device that clients contact in order to get access to the network.RADIUS server This is a server which provides for authentication/authorization via the protocol described in [3], and for accounting as described in [4].