Download presentation
Presentation is loading. Please wait.
Published byRalph Chambers Modified over 9 years ago
1
Presents Fall Forum 2002
2
H.235 Security Status Quo and Perspectives Presented by Martin Euchner, Rapporteur Q.G/16 Siemens AG
3
Sponsored in part by: IMTC Fall Forum – November 2002 – New York, NY, USA Outline Status Quo of H.235 Some insights into work under development
4
Sponsored in part by: IMTC Fall Forum – November 2002 – New York, NY, USA Evolution of H.235 199719981999200020012002 Initial Draft H.323V2 H.323V4 H.323V5 H.235V1 approved Core Security Framework Engineering Consolidation Improvement and Additions 1st Deployment 1996 2003 H.235V2 Annex D Annex E approved Annex F H.530 consent H.235V3 consent H.235 Annex G consent Security Profiles Annex D Annex E started
5
Sponsored in part by: IMTC Fall Forum – November 2002 – New York, NY, USA Status of H.235 and related Recommendations Approved and published: H.235 Version 2 (2000): Main text including Annex D “Baseline Security Profile” Annex E “Signature Security Profile” H.235 Annex F “Hybrid PKI Security Profile“ H.323 Annex J “Security for SETs” H.530 “Mobility Security in H.510”
6
Sponsored in part by: IMTC Fall Forum – November 2002 – New York, NY, USA Work under development Scheduled for consent AAP: 5/2003 Draft H.235 V3 Draft H.235 Annex G “SRTP Usage“
7
Sponsored in part by: IMTC Fall Forum – November 2002 – New York, NY, USA Draft H.235 Version 3 Features Annex D “Authentication-Only” Option for improved NAT/FW traversal of the security protocol Acknowledged and more robust key update mechanism Encrypted H.245 inband DTMF signaling OIDs for AES encryption algorithm and (E)OFB mode 1536-bit Diffie-Hellman group defined for high security Key distribution procedure on the RAS channel Enhanced error return codes Secure multiple payload stream and secure MoIP (tbd) …
8
Sponsored in part by: IMTC Fall Forum – November 2002 – New York, NY, USA Draft H.235 Annex G “SRTP Usage“ Goals Make IETF Secure RTP Protocol available to H.235- based systems Be interoperable with other SRTP terminals Use a stream cipher for improved performance, robustness and security Yield the improved security for RTCP protection Obtain improved integrity spanning the entire RTP/RTCP packet Deploy state-of-the art AES encryption algorithm, Use session encryption/authentication keys derived from a pseudo-random function at both ends
9
Sponsored in part by: IMTC Fall Forum – November 2002 – New York, NY, USA H.235 Annex G Approach Provide integration with key management for SRTP and SRTCP Address fast connect with forward and reverse logical channels Negotiate SRTP features Negotiate a SRTP master key(s) and derive SRTP/SRTCP session keys Use also IETF MIKEY Key Management???
10
Sponsored in part by: IMTC Fall Forum – November 2002 – New York, NY, USA
Similar presentations
© 2025 SlidePlayer.com. Inc.
All rights reserved.