[VOIPSEC] Client authentication

Christoph Fürstaller christoph.fuerstaller at kurtkrenn.com
Wed Apr 12 07:29:33 CDT 2006


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hi,

I'm testing SIPS for increased security during the call establishment.

Is it a good idea to use client certs (for TLS connection)? Or is the
effort to realice that to much? Cause the benefits from authenticating a
client only for the TLS connection isn't that much. Authenticating the
client against a DB is done later on in the PBX, so authentication would
be done twice.

What do you think about that?

chris...

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.1 (GNU/Linux)
Comment: Using GnuPG with Thunderbird - http://enigmail.mozdev.org

iD8DBQFEPPKtR0exH8dhr/YRAoFcAKDGbRw7qVz/XNF7IMipfd//6KtuIQCgg9oQ
sOPz+PX13wg7eRFrjXNfKQI=
=6+DK
-----END PGP SIGNATURE-----




More information about the Voipsec mailing list