Presentation is loading. Please wait.

Presentation is loading. Please wait.

Presents Fall Forum 2002. H.235 Security Status Quo and Perspectives Presented by Martin Euchner, Rapporteur Q.G/16 Siemens AG.

Similar presentations


Presentation on theme: "Presents Fall Forum 2002. H.235 Security Status Quo and Perspectives Presented by Martin Euchner, Rapporteur Q.G/16 Siemens AG."— Presentation transcript:

1 Presents Fall Forum 2002

2 H.235 Security Status Quo and Perspectives Presented by Martin Euchner, Rapporteur Q.G/16 Siemens AG

3 Sponsored in part by: IMTC Fall Forum – November 2002 – New York, NY, USA Outline Status Quo of H.235 Some insights into work under development

4 Sponsored in part by: IMTC Fall Forum – November 2002 – New York, NY, USA Evolution of H.235 199719981999200020012002 Initial Draft H.323V2 H.323V4 H.323V5 H.235V1 approved Core Security Framework Engineering Consolidation Improvement and Additions 1st Deployment 1996 2003 H.235V2 Annex D Annex E approved Annex F H.530 consent H.235V3 consent H.235 Annex G consent Security Profiles Annex D Annex E started

5 Sponsored in part by: IMTC Fall Forum – November 2002 – New York, NY, USA Status of H.235 and related Recommendations Approved and published: H.235 Version 2 (2000): Main text including Annex D “Baseline Security Profile” Annex E “Signature Security Profile” H.235 Annex F “Hybrid PKI Security Profile“ H.323 Annex J “Security for SETs” H.530 “Mobility Security in H.510”

6 Sponsored in part by: IMTC Fall Forum – November 2002 – New York, NY, USA Work under development Scheduled for consent AAP: 5/2003 Draft H.235 V3 Draft H.235 Annex G “SRTP Usage“

7 Sponsored in part by: IMTC Fall Forum – November 2002 – New York, NY, USA Draft H.235 Version 3 Features Annex D “Authentication-Only” Option for improved NAT/FW traversal of the security protocol Acknowledged and more robust key update mechanism Encrypted H.245 inband DTMF signaling OIDs for AES encryption algorithm and (E)OFB mode 1536-bit Diffie-Hellman group defined for high security Key distribution procedure on the RAS channel Enhanced error return codes Secure multiple payload stream and secure MoIP (tbd) …

8 Sponsored in part by: IMTC Fall Forum – November 2002 – New York, NY, USA Draft H.235 Annex G “SRTP Usage“ Goals Make IETF Secure RTP Protocol available to H.235- based systems Be interoperable with other SRTP terminals Use a stream cipher for improved performance, robustness and security Yield the improved security for RTCP protection Obtain improved integrity spanning the entire RTP/RTCP packet Deploy state-of-the art AES encryption algorithm, Use session encryption/authentication keys derived from a pseudo-random function at both ends

9 Sponsored in part by: IMTC Fall Forum – November 2002 – New York, NY, USA H.235 Annex G Approach Provide integration with key management for SRTP and SRTCP Address fast connect with forward and reverse logical channels Negotiate SRTP features Negotiate a SRTP master key(s) and derive SRTP/SRTCP session keys Use also IETF MIKEY Key Management???

10 Sponsored in part by: IMTC Fall Forum – November 2002 – New York, NY, USA


Download ppt "Presents Fall Forum 2002. H.235 Security Status Quo and Perspectives Presented by Martin Euchner, Rapporteur Q.G/16 Siemens AG."

Similar presentations


Ads by Google