Connected Party ID (considered evil) Who I’m Talking To Cullen Jennings

Slides:



Advertisements
Similar presentations
SIP Session-ID draft-kaplan-sip-session-id-02 Hadriel Kaplan.
Advertisements

August 2, 2005SIPPING WG IETF 63 ETSI TISPAN ISDN simulation services Roland Jesske Denis Alexeitsev Miguel Garcia-Martin.
SIPPING 3GPP Requirements Ad Hoc Meeting Georg Mayer IETF#53, Minneapolis.
IETF 71 SIPPING WG meeting draft-ietf-sipping-pai-update-00.
NetPay provides best and effective solution for company Managers to maintain their employee scheduling task (including staff in/out details, overtime,
SIP Working Group Jonathan Rosenberg dynamicsoft.
Authentication in SIP Jon Peterson NeuStar, Inc Internet2 Member Meeting Los Angeles, CA - Nov 2002.
SIP issues with S/MIME and CMS Rohan Mahy SIP, SIPPING co-chair.
Service Identification Jonathan Rosenberg Cisco. Agenda Service Identification Architecture draft (draft-rosenberg-sipping-service- identification) Media.
Address Settlement by Peer to Peer (ASP) Jonathan Rosenberg Cullen Jennings Eric Rescorla.
RTC-Web Framework Jonathan Rosenberg Chief Technology Strategist, Skype.
Sharmistha Chatterjee 82349D 82349D Helsinki University of Technology Instant Messaging and Presence with SIP.
9,825,461,087,64 10,91 6,00 0,00 8,00 SIP Identity Usage in Enterprise Scenarios IETF #64 Vancouver, 11/2005 draft-fries-sipping-identity-enterprise-scenario-01.txt.
A “net head” view on SIP Henning Schulzrinne Columbia University IRT Lab Siemens Munich -- January 2003.
SIP-SAML assisted Diffie-Hellman MIKEY IETF 65 MSEC Mar 21, 2006 Robert Moskowitz.
SIP Greg Nelson Duc Pham. SIP Introduction Application-layer (signaling) control protocol for initiating a session among users Application-layer (signaling)
Design and Implementation of SIP-aware DDoS Attack Detection System.
One Phone to Rule Them All A Case Study Sarah-Jane Saravani Learning Hub Manager Waikato Institute of Technology, New Zealand
GRUU Mechanism Jonathan Rosenberg. Status Draft-rosenberg-sipping-gruu-reqs-01 defines the problem Draft-rosenberg-sip-gruu submitted with proposed solution.
July 30, 2010SIPREC WG1 SIP Call Control - Recording Extensions draft-johnston-siprec-cc-rec-00 Alan Johnston Andrew Hutton.
4 August 2005draft-burger-simple-imdn-011 Instant Message Delivery Notification (IMDN) for Presence and Instant Messaging (CPIM) Messages draft-burger-simple-imdn-01.
Session Initiation Protocol Tutorial Ronen Ben-Yossef VP of Products - RADCOM
SIP Action Referral Rifaat Shekh-Yusef Cullen Jennings Alan Johnston Francois Audet 1 IETF 80, SPLICES WG, Prague March 29, 2011.
History of Voic Cullen Jennings Mary Barnes.
July 10, 2006rtpsec BOF IETF-661 Best Effort SRTP Phil Zimmermann Alan Johnston.
B2BUA – A New Type of SIP Server Name: Stephen Cipolli Title: System Architect Date: Feb. 12, 2004.
S/MIME Certificates Cullen Jennings
Draft-rosen-ecrit-emergency- framework-00 Brian Rosen NeuStar CPa
Presented By Team Netgeeks SIP Session Initiation Protocol.
Cullen Jennings Certificate Directory for SIP.
S/MIME and Certs Cullen Jennings
Security, NATs and Firewalls Ingate Systems. Basics of SIP Security.
Peering: A Minimalist Approach Rohan Mahy IETF 66 — Speermint WG.
1 IETF 72 SIP WG meeting SIP Identity issues John Elwell et alia.
SIP INFO Event Framework (draft-kaplan-sip-info-events-00) Hadriel Kaplan Christer Holmberg 70th IETF, Vancouver, Canada.
Service Identification Jonathan Rosenberg Cisco. Examples Contrived chess example PoC Game that uses voice for comments vs. telephony with IMs –Both use.
Interworking between SIP and QSIG for call transfer draft-rey-sipping-qsig2sip-transfer-00.txt Jean-Francois Rey Alcatel IETF59.
The mandate of this working group is to facilitate effective service interoperability utilizing SIP in heterogeneous network environments as noted below.
Draft-ono-sipping-end2middle-security-00 1 End-to-middle Security in SIP Kumiko Ono NTT Corporation July 17, 2003.
SIP Connection Reuse Efficiency Rohan Mahy—Airespace
ECRIT - Getting Certain URIs, and Alternatives to Getting Emergency Dialstring(s) draft-polk-ecrit-lost-server-uri-00 draft-polk-dhc-ecrit-uri-psap-esrp-00.
1 Trusted Transitive Introduction Max Pritikin (Presentation by Cullen Jennings) Revision A.
Real-Time Streaming Protocol draft-ietf-mmusic-rfc2326bis-01.txt Magnus Westerlund.
End-to-middle Security in SIP draft-ono-sipping-end2middle-security-04 Kumiko Ono IETF62.
Name that User John Elwell Cullen Jennings Venkatesh Venkataramanan
March 20, 2007BLISS BOF IETF-681 Requirements and Implementation Options for the Multiple Line Appearance Feature using the Session Initiation Protocol.
GRUU Jonathan Rosenberg Cisco Systems. Changes in -06 Editorial as a result of RFC-ED early copy experiment.
Call Completion using BFCP draft-roach-sipping-callcomp-bfcp IETF 67 – San Diego November 7, 2006.
GRUU Jonathan Rosenberg Cisco Systems. Main Changes Up front discussion of URI properties Opaque URI parameter for constructing GRUU Procedure for EP.
Session-ID Requirements for Interim-3 draft-ietf-insipid-session-id-reqts-00 Paul Jones, Gonzalo Salgueiro, James Polk, Laura Liess, Hadriel Kaplan.
Spoofing The False Digital Identity. What is Spoofing?  Spoofing is the action of making something look like something that it is not in order to gain.
Easy Access with templates I: Create a database Lesson 16 By the end of this lesson you will be able to complete the following: Find the best database.
SOSIMPLE: A Serverless, Standards- based, P2P SIP Communication System David A. Bryan and Bruce B. Lowekamp College of William and Mary Cullen Jennings.
We are UK based property investment company. we provide Buy to Let Properties for Sale, property investment and full letting management for any properties.
SESSION-ID Backward COMPATIBILITY
End-to-middle Security in SIP
Authenticated Identity
IP Telephony (VoIP).
draft-rescorla-fallback-01
SIP for Grid networks Franco Callegati, Aldo Campi, Walter Cerroni
Cullen Jennings S/MIME Certificates Cullen Jennings
draft-jennings-vipr-overview IETF 81
ECRIT Interim: SIP Location Conveyance
Session-ID Requirements at IETF83
Verstat Related Best Practices
Strong Password Authentication Protocols
Windows 10 Enterprise E3 for Small and Medium Business
IP Interconnection Profile
ADUG 21-Oct 2013 Grahame Grieve
SAML/SIP Profiles and Call Initiation
Presentation transcript:

Connected Party ID (considered evil) Who I’m Talking To Cullen Jennings

Problem Basic problem is when A is talking to B, letting know A know that B has changed to C Can happen before or after 200 Can happen from caller to callee or callee to caller

Approaches 1) Consider this a update of state in dialog –1a) modify To/From (but tags stay same) –1b) put identity in some other header 2) Consider this a transfer to a new user

1a) Update To or From Pro: –Easy to understand and implement –Does not end up with duplicate data in some other location –Would make To and From meaningful Con: –Not compatible with 2543 Could use supported tag Harm when not understood is minimal –(Will get a 481) Number of 2543 endpoints is dropping

1b) Update with new header Could put identity in new header, body, AIB – (but not PAI) Pro: –Backward compatible 2543 –same end result as 1a Con: –Phones display one thing for identity. SIP has To/From, PAI, SMIME cert identity, identity identity, Contact, Headers in AIB, and now something else? What does a UA developer display on phone?

2) Consider it a transfer Pro: –We have it. –Consistent use of protocol for when B changed to C Con: –Early attended transfer has issues –Transfer has some serious security issues if S/MIME & AIB is not used. May be disabled across trust domains.