msec-5----Page:9
1  2  3  4  5  6  7  8  9  10  11  12  13 

Low Latency and Computational overhead
Consider Diffie-Hellman key size
Recommendation is 4096 bits to equal 128 bits for AES key
This will be too expensive for many SIP phones
Use ECC Diffie-Hellman?
Use optional smaller Diffie-Hellman key size
512 bits
SIP phone could have mechanism to get new key periodically from PC or PDA
Or compute one overnight
Remember Diffie-Hellman key is used in an HMAC to produce session key.
PPT Version