IETF70, Vancouver, December 2007draft-wing-sipping-srtp-key-021 Disclosing Secure RTP (SRTP) Session Keys draft-wing-sipping-srtp-key-02 Dan Wing,

Slides:



Advertisements
Similar presentations
SIP, Firewalls and NATs Oh My!. SIP Summit SIP, Firewalls and NATs, Oh My! Getting SIP Through Firewalls Firewalls Typically.
Advertisements

Information-Centric Networks09c-1 Week 9 / Paper 3 VoCCN: Voice Over Content-Centric Networks –V. Jacobson, D. K. Smetters, N. H. Briggs, M. F. Plass,
BRIAN ROSEN HANNES TSCHOFENIG draft-ietf-ecrit-data-only-ea-02.
SIP and IMS Enabled Residential Gateway Sergio Romero Telefónica I+D Jan Önnegren Ericsson AB Alex De Smedt Thomson Telecom.
January 23-26, 2007 Ft. Lauderdale, Florida An introduction to SIP Simon Millard Professional Services Manager Aculab.
9,825,461,087,64 10,91 6,00 0,00 8,00 SIP Identity Usage in Enterprise Scenarios IETF #64 Vancouver, 11/2005 draft-fries-sipping-identity-enterprise-scenario-01.txt.
Media Description for IKE in SDP draft-saito-mmusic-sdp-ike-01 Makoto Saito Dan Wing
SIP vs H323 Over Wireless networks Presented by Srikar Reddy Yeruva Instructor Chin Chin Chang.
Academic Advisor: Dr. Yuval Elovici Professional Advisor: Yuri Granovsky Team: Yuri Manusov Yevgeny Fishman Boris Umansky.
Introduction to SIP Speaker: Min-Hua Yang Advisor: Ho-Ting Wu Date:2005/3/29.
Secure Telephony Enabled Middle-box (STEM) Maggie Nguyen Dr. Mark Stamp SJSU - CS 265 Spring 2003 STEM is proposed as a solution to network vulnerabilities,
1 © 2004 Cisco Systems, Inc. All rights reserved. Total Conversation through ITU-T & IETF Standards: Sign, Type, and Speak – You Decide Paul E. Jones Cisco.
VoIP Billing Solutions Company PortaSIP.
IT Expo SECURITY Scott Beer Director, Product Support Ingate
Session-ID Requirements for IETF84 draft-ietf-insipid-session-id-reqts-00 1 August 2012 Paul Jones, Gonzalo Salgueiro, James Polk, Laura Liess, Hadriel.
RTP Relay Support in Intelligent Gateway Author: Pieere Pi
1 RTCWEB interim Remote recording use case / requirements John Elwell.
DTLS-SRTP Handling in SIP B2BUAs draft-ram-straw-b2bua-dtls-srtp IETF-91 Hawaii, Nov 12, 2014 Presenter: Tirumaleswar Reddy Authors: Ram Mohan, Tirumaleswar.
July 10, 2006rtpsec BOF IETF-661 Best Effort SRTP Phil Zimmermann Alan Johnston.
Fall VON - September 28, 1999 C O N N E C T I N G T H E W O R L D W I T H A P P L I C A T I O N S SIP - Ready to Deploy Jim Nelson,
March 10, 2008SIPPING WG IETF-711 Secure Media Recording and Transcoding with the Session Initiation Protocol draft-wing-sipping-srtp-key-03 Dan Wing Francois.
1 Kommunikatsiooniteenuste arendus IRT0080 Loeng 4 Avo Ots telekommunikatsiooni õppetool, TTÜ raadio- ja sidetehnika inst.
1 BBTelsys and Secure SIP Calling Providing Solutions that Work in the Real World.
Architectural Considerations for GEOPRIV/ECRIT Presentation given by Hannes Tschofenig.
Applied Communications Technology Voice Over IP (VOIP) nas1, April 2012 How does VOIP work? Why are we interested? What components does it have? What standards.
Session Initiation Protocol (SIP). What is SIP? An application-layer protocol A control (signaling) protocol.
SIPREC Conference Recording (draft-kyzivat-siprec-conference-use-cases-01) IETF 89, March 7, 2014 Authors: Michael Yan, Paul Kyzivat, Simon Romano.
1 R 255 G 211 B 8 R 255 G 175 B 0 R 127 G 16 B 162 R 163 G 166 B 173 R 137 G 146 B 155 R 175 G 0 B 51 R 52 G 195 B 51 R 0 G 0 B 0 R 255 G 255 B 255 Primary.
Moving RFC 6193 to Proposed Standard MMUSIC – IETF 81 – Quebec City July 2011 Makoto Saito, Dan Wing, Masashi Toyama,
VoN September ‘98 1 9/17/98 VoN Standards Update Jonathan Rosenberg Bell Laboratories September 17, 1998.
Response to Call Back questions IETF 77 – Anaheim Stephen McCann, RIM.
Session Recording Protocol Requirements IETF 75, Stockholm (Leon Portman on behalf of the team)
7/6/20061 Speermint Use Case for Cable IETF 66 Yiu L. Lee JULY 2006.
ZRTP: Media Path Key Agreement for Unicast Secure RTP April 2011, RFC 6189 Author(s): P. Zimmermann, A. Johnston, J. Callas Speaker :Ted 1.
1 SPEERMINT Use Cases for Cable IETF 66 Montreal 11 JULY 2006 Presented by Yiu L. Lee.
Authentication of Signaling in VoIP Applications Authors: Srinivasan et al. (MIT Campus of Anna University, India) Source: IJNS review paper Reporter:
November 21st, 2002 Media Transcoding Design Team (a.k.a. team for the deaf) SIPPING WG
Simon Millard Professional Services Manager Aculab – booth 402 The State of SIP.
Security, NATs and Firewalls Ingate Systems. Basics of SIP Security.
Session Recording (SIPREC) Protocol (draft-ietf-siprec-protocol-09) Leon Portman Henry Lum
1 Secure VoIP: call establishment and media protection Johan Bilien, Erik Eliasson, Joachim Orrblad, Jon-Olov Vatn Telecommunication Systems Laboratory.
1 SIP Requirements for SRTP Keying Dan Wing IETF 66 v4.
BRIAN ROSEN HANNES TSCHOFENIG HENNING SCHULZRINNE draft-rosen-ecrit-data-only-ea.
CSE5803 Advanced Internet Protocols and Applications (14) Introduction Developed in recent years, for low cost phone calls (long distance in particular).
SAML for SIP Hannes Tschofenig, Jon Peterson, James Polk, Douglas Sicker, Marcus Tegnander.
Information-Centric Networks Section # 9.3: Clean Slate Instructor: George Xylomenos Department: Informatics.
Open issues from SIP list Jonathan Rosenberg dynamicsoft.
1 Media Session Authorization Dan Wing draft-wing-session-auth-00.txt.
17 February 2016 SIPPING - IEPREP Joint Meeting Fred Baker - IEPREP co-chair Rohan Mahy - SIPPING co-chair.
IETF70, Vancouver, December 2007draft-wing-sip-identity-media-011 SIP Identity using Media Path draft-wing-sip-identity-media-01 Dan Wing,
Communication Methods
1 End-to-middle Security in SIP Kumiko Ono NTT Corporation March 1, 2004 draft-ietf-sipping-e2m-sec-reqs-01.txt draft-ono-sipping-end2middle-security-01.txt.
1 Connectivity Preconditions for SDP Media Stream draft-andreasen-mmusic-connectivityprecondition-00.txt March 3, 2004 Flemming Andreasen
SIPREC Conference Recording (draft-kyzivat-siprec-conference-use-cases-00) IETF 87, November 4, 2013 Authors: Michael Yan, Paul Kyzivat, Simon Romano.
SDP Security Descriptions for Media Streams draft-ietf-mmusic-sdescriptions-02.txt November 14, 2003 Flemming Andreasen Mark Baugher.
1 Session Recording Protocol Requirements IETF 75, Stockholm (Leon Portman on behalf of the team) Draft authors: Rajnish Jain, Leon Portman, Vijay Gurbani,
VoIP ALLPPT.com _ Free PowerPoint Templates, Diagrams and Charts.
End-to-middle Security in SIP
Dan Wing IETF83 - March 2012 RTCWEB Working Group Media Security: A chat about RTP, SRTP, Security Descriptions, DTLS-SRTP, EKT, the past.
IP Telephony (VoIP).
Protocols and the TCP/IP Suite Overview and Discussion
Transcoding Framework
Henning Schulzrinne Stephen McCann Gabor Bajko Hannes Tschofenig
Session Initiation Protocol (SIP)
Introduction to Networking
Jean-François Mulé CableLabs
Transcoding Framework
VoIP Signaling Protocols Framework
An Architecture for Media Recording using the Session Initiation Protocol draft-ietf-siprec-architecture Andy Hutton
Presentation transcript:

IETF70, Vancouver, December 2007draft-wing-sipping-srtp-key-021 Disclosing Secure RTP (SRTP) Session Keys draft-wing-sipping-srtp-key-02 Dan Wing, Francois Audet, Steffen Fries, Hannes Tschofenig,

IETF70, Vancouver, December 2007draft-wing-sipping-srtp-key-022 Scenario “This call may be recorded for quality purposes” Businesses need to record their employee’s phone calls –Banks, stockbrokers –Catalog ordering companies –Travel agencies, hotel reservations –Regulatory requirements United States: Sarbanes-Oxley Act

IETF70, Vancouver, December 2007draft-wing-sipping-srtp-key-023 Meeting Requirement Today Today: Recording is easy –Media is RTP (unencrypted) –Signaling is SIP (unencrypted) IP network IP phones VoIP headsets VoIP softphones Caller Recording Device

IETF70, Vancouver, December 2007draft-wing-sipping-srtp-key-024 Meeting Requirement Tomorrow Tomorrow: Recording is not possible –Media is SRTP –SIP signaling might also be encrypted

IETF70, Vancouver, December 2007draft-wing-sipping-srtp-key-025 Requirements Completely separate from SRTP keying technique –Work with every SRTP keying mechanism Allow SIP signaling to be encrypted Allow SDP to be encrypted Endpoint MUST cooperate in key disclosure –Allows user to be reminded of SRTP key disclosure –Allows user to authorize the recording, per call Do not require a B2BUA Allow recording all calls or selective calls –User decides / call processing system decides

IETF70, Vancouver, December 2007draft-wing-sipping-srtp-key-026 Proposed Mechanism

IETF70, Vancouver, December 2007draft-wing-sipping-srtp-key-027 Proposed Mechanism 1.Endpoints perform normal SRTP keying 2.Endpoint uses public key of recording device to encrypt the two SRTP session keys (transmit key and receive key) 3.Endpoint sends that encrypted information to its SIP proxy 4.SIP proxy routes the message to the recording device 5.Recording device decrypts message, and now has SRTP session keys

IETF70, Vancouver, December 2007draft-wing-sipping-srtp-key-028 Questions draft-wing-sipping-srtp-key-02 Dan Wing, Francois Audet, Steffen Fries, Hannes Tschofenig,