HP-UX Mobile IPv4 A.03.01 Administrator's Guide

2TQFWEV1XGTXKGY
###5WRRQTV
Chapter 1
10
AAA Mobile Node Authentication with Co-located Care-of Addresses
When a AAA Mobile Node uses Co-located Agent Care-of Addresses (CCOAs), HP-UX
Mobile IPv4 uses the procedure listed below for the initial registration. This procedure is
also shown in Figure 1-7.
1. The Mobile Node sends the Registration Request directly to the Home Agent. The
Registration Request includes an authentication value calculated from fields in the
Registration Request and the Mobile Node’s AAA security key or password.
2. The Home Agent sends a Diameter AA-Mobile Node Request (AMR) to the AAAH,
with the original Mobile IPv4 Registration Request and authentication value.
3. The AAAH authenticates the request using the Registration Request, authentication
value and the security key configured for the user. If the request passes the
authentication check, the AAAH generates a dynamic Mobile Node - Home Agent
key. The AAAH sends an AA-Mobile Node Answer (AMA) to the Home Agent,
including the dynamic key.
4. The Home Agent sends the Mobile IPv4 Registration Reply, including the dynamic
key, to the Mobile Node.
Figure 1-7 Message Flow for Initial AAA Registration with Co-located Care-of
Address
Dynamic Key Generation
During the initial registration process, the AAAH server generates dynamic keys that
Mobile IPv4 can use to authenticate messages between the following entities:
Mobile Node and Home Agent
Mobile Node and Foreign Agent
Home Agent and Foreign Agent