[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [AVT] Fwd: [Tsvwg] Looking for feedback on DTLS
Hi
On Aug 13, 2004, at 7:40 AM, Lee Dilkie wrote:
Mark Baugher wrote:
I don't think avt needs to be concerned with yet another way to
authenticate/encrypt RTP packets in addition to SRTP and IPsec. I
don't know what the advantages are of using TLS over IPsec. If
security at the internetwork layer is not the right place, then we
have SRTP. The only Datagram TLS application that is mentioned is
SIP. I don't know why since DTLS does nothing to address SIP's real
security problems, which are middle-to-middle as much as end-to-end.
But this can be properly deferred to one of the SIP WGs IMHO.
Perhaps this isn't the right place for this discussion but I for one
was pleased to read the paper. And seeing that SRTP requires external
mechanism's for key exchange, this solution seems to be somewhat
relevant to the participants of this forum.
If you're saying that DTLS key establishment can be used for SRTP
sessions, then I'd like to understand how this is done.
IPsec has deployment difficulities, TLS is dependant on TCP. This
proposal seems to me to address the problem space (secure UDP-based
transport) nicely.
The deployment issues of IPsec are not relevant to AVT, nor are the TLS
VPN deployment issues that are encountered when trying to replace IPsec
with TLS. This is an interesting and important topic, and I think
there is much more to it than what's in the DTLS paper. But this is
not the right forum. For our purposes, I'd like to understand what
advantages DTLS has over IPsec and SRTP for RTP traffic. What does
this group need to do, if anything, or be aware of, if anything, with
respect to DTLS?
Not all of us are using SIP for session establishment of RTP streams.
I mentioned SIP because the document mentions SIP as the application
that needs DTLS. There's no mention of RTP or real-time applications,
just SIP. If you have a well thought-out use for DTLS and RTP, I would
like to hear it.
Mark
regards,
Lee Dilkie
Mitel
_______________________________________________
Audio/Video Transport Working Group
avt at ietf.org
https://www1.ietf.org/mailman/listinfo/avt
_______________________________________________
Audio/Video Transport Working Group
avt at ietf.org
https://www1.ietf.org/mailman/listinfo/avt