%% You should probably cite draft-ietf-ipsecme-eap-mutual instead of this I-D. @techreport{eronen-ipsec-ikev2-eap-auth-07, number = {draft-eronen-ipsec-ikev2-eap-auth-07}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-eronen-ipsec-ikev2-eap-auth/07/}, author = {Pasi Eronen and Yaron Sheffer and Hannes Tschofenig}, title = {{An Extension for EAP-Only Authentication in IKEv2}}, pagetotal = 12, year = 2009, month = oct, day = 20, abstract = {IKEv2 specifies that EAP authentication must be used together with public key signature based responder authentication. This is necessary with old EAP methods that provide only unilateral authentication using, e.g., one-time passwords or token cards. This document specifies how EAP methods that provide mutual authentication and key agreement can be used to provide extensible responder authentication for IKEv2 based on methods other than public key signatures.}, }