[VOIPSEC] Why a secure keyechange for media encryption?

Michael Prochaska tm021090 at fh-stpoelten.ac.at
Fri Apr 28 11:51:01 CDT 2006


> If you don't trust the hop-by-hop signaling path to remain secure, don't use
> it - your signaling is almost as sensitive as your media - more for some,
> less for others.  

that's the point in my eyes too. i would even say the signaling is more 
sensitive than the media. the media may be sensitive sometimes but the 
signaling IS sensitive everytime.

> Send signaling directly to the far-end, or use s/mime to
> encrypt the SDP (good luck with that).

is it problematic to encrypt the SDP with S/MIME in your mind?

regards,
michael




More information about the Voipsec mailing list