Re: [Asap] ASAP: Introduction & Way Forward

"Kaustubh Inamdar (kinamdar)" <kinamdar@cisco.com> Wed, 21 October 2020 17:34 UTC

Return-Path: <kinamdar@cisco.com>
X-Original-To: asap@ietfa.amsl.com
Delivered-To: asap@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 6B8E23A120C for <asap@ietfa.amsl.com>; Wed, 21 Oct 2020 10:34:29 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -9.597
X-Spam-Level:
X-Spam-Status: No, score=-9.597 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_MSPIKE_H3=0.001, RCVD_IN_MSPIKE_WL=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=cisco.com header.b=OjJ38eZt; dkim=pass (1024-bit key) header.d=cisco.onmicrosoft.com header.b=pkdU1KFn
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id eqRjp6ftjuvw for <asap@ietfa.amsl.com>; Wed, 21 Oct 2020 10:34:27 -0700 (PDT)
Received: from alln-iport-2.cisco.com (alln-iport-2.cisco.com [173.37.142.89]) (using TLSv1.2 with cipher DHE-RSA-SEED-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id F33803A0B08 for <asap@ietf.org>; Wed, 21 Oct 2020 10:34:26 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=34667; q=dns/txt; s=iport; t=1603301667; x=1604511267; h=from:to:cc:subject:date:message-id:mime-version; bh=qgKe52Z3TWHEFvR0u/ZVdm+aQA63lfJSZccLJnBeDTw=; b=OjJ38eZt65nR5sdDTBdSZftiO0D5umaXfkU8sumw/jarf3Qs6Rlwrv2N 4SmjfHfWb7G/WCSNdU9fxUEnK+p+qA3DdxEwi3JINHby3GMg5FNAO/iY6 5xtrcHAV9iTEkUqmVWaUlVrcvhgsO0iW0F0ij6IqcXkTSC3O25/1UidLJ 0=;
IronPort-PHdr: 9a23:q7RUsh8CmVpmAP9uRHGN82YQeigqvan1NQcJ650hzqhDabmn44+7ZRaN5PhxghnOR4qIo/5Hiu+DtafmVCRA5Juaq3kNfdRKUANNksQZmQEsQavnQU32JfLndWo2ScJFUlI2/nynPw5SAsmtL1HXq2e5uDgVHBi3PAFpJ+PzT4jVicn/1+2795DJJQtSgz/oarJpJxLwpgLU5cQ=
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: A0BDFwCscJBf/4YNJK1XCRwBAQE8AQEEBAEBAgEBBwEBgWQCgSEvIy4HcFkvLAqEMoNJA41RmHqBLhSBEQNVCwEBAQ0BASMKAgQBAYRKGYFxAiU0CQ4CAwEBCwEBBQEBAQIBBgRthWEBC4VyAQEBBBIRChMBASwLAREBCBEDAQEBIQoCBDAdCgQOBSKDBAGBfk0DLQEBDqVkAoE5iGh2gTKDBAEBBYE3AoETgmQYghADBoE4AYJxg3CGVxuBQT+BESccgk0+glwBAQIBgScBCAkCAQgdAxcBB4JwM4IskAgkCwmCVj6HEZwTgQwKgmqJBIZcixQDH6FakVGBaIp0lUACBAIEBQIOAQEFgVQ6Kj1wcBU7KgGCPlAXAg2OJgUXg06FFIVCdAI2AgYBCQEBAwl8jDsBgRABAQ
X-IronPort-AV: E=Sophos;i="5.77,401,1596499200"; d="scan'208,217";a="588981090"
Received: from alln-core-12.cisco.com ([173.36.13.134]) by alln-iport-2.cisco.com with ESMTP/TLS/DHE-RSA-SEED-SHA; 21 Oct 2020 17:34:06 +0000
Received: from XCH-RCD-001.cisco.com (xch-rcd-001.cisco.com [173.37.102.11]) by alln-core-12.cisco.com (8.15.2/8.15.2) with ESMTPS id 09LHY5Od015750 (version=TLSv1.2 cipher=AES256-SHA bits=256 verify=FAIL); Wed, 21 Oct 2020 17:34:06 GMT
Received: from xhs-rtp-002.cisco.com (64.101.210.229) by XCH-RCD-001.cisco.com (173.37.102.11) with Microsoft SMTP Server (TLS) id 15.0.1497.2; Wed, 21 Oct 2020 12:34:05 -0500
Received: from xhs-rtp-002.cisco.com (64.101.210.229) by xhs-rtp-002.cisco.com (64.101.210.229) with Microsoft SMTP Server (TLS) id 15.0.1497.2; Wed, 21 Oct 2020 13:34:04 -0400
Received: from NAM11-BN8-obe.outbound.protection.outlook.com (64.101.32.56) by xhs-rtp-002.cisco.com (64.101.210.229) with Microsoft SMTP Server (TLS) id 15.0.1497.2 via Frontend Transport; Wed, 21 Oct 2020 13:34:04 -0400
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=iobbqVVI/Ok2pdC607M9t5/W6HbU6sGj2bAGn4e1TadZXlsn/PJQd5WkINxl1c4VAsNTv/S6qCt2c195zA9/PIt4NsuFUyRl8kHvjd2fg31Fi7iKqQPS5gkzDShVN+vIiU06Zo360bczopHsfiCja2RpNjqn/gzcOoUSdIrAUCk2TpbbMMFiBlbTOqo8RivTr/vQ2WkXKeVZWYTWLcl8++hvuP7egB9rWvLXbgjaAbayIfaP95ajfk9GrOlrVNJzf0UauWOfAuEFpW1JkEt0TiPwj28g/BzLkSeshUMr+STidJRkj5PLbTNkNlkYhBrhzNMuLiFKgA9/Qn/VpiH6nQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=qgKe52Z3TWHEFvR0u/ZVdm+aQA63lfJSZccLJnBeDTw=; b=SJhFSmxRzqHvRjJE72Y1lBXAQ4Pr/szt5BdGHGlFs3/iBNBNCPtgWqQCMhEJUa4g4NJBMBHhDweM8lguwGksoSBv9TqBYesCBdBWqAszRcLo1ysM4Ia15T6AjCjU7vzoh+sRMbpyIZnLJHIoEXM6iP3qUGGjmypvNHBna05rp6wrkmWxNDu282f7KTgrsV8MK2yqKXkeY6FdLMHghlXWLkcut2kM4FjBRViGJyjZ5wZvyZL0OYAq3Z9+NmDOvtVOqsqaPxU0JNtj8nJwbNzDEukuJESclORazgQndlqFx/tltn/CBk1xtw8C7GbubL/2sYyvuUaJkIuXItCZzhUClQ==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=cisco.com; dmarc=pass action=none header.from=cisco.com; dkim=pass header.d=cisco.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cisco.onmicrosoft.com; s=selector2-cisco-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=qgKe52Z3TWHEFvR0u/ZVdm+aQA63lfJSZccLJnBeDTw=; b=pkdU1KFnIwcUnhT0J1dBXjPzkJEW9jNDYaScPrr6aI1rl/hFQoBxRq8HOPnob2c7FbANALUs6gsbvL3ndg+ZDf5LGmEh0cghJ5rpZxl9e/nCKc0K23z6JW/xH842XKkjF/40mTM0KWo87Mm6rqxufUsOwViIw+02dH6NkGTw/M8=
Received: from MWHPR11MB1774.namprd11.prod.outlook.com (2603:10b6:300:10a::19) by MW3PR11MB4585.namprd11.prod.outlook.com (2603:10b6:303:52::17) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.3499.18; Wed, 21 Oct 2020 17:34:03 +0000
Received: from MWHPR11MB1774.namprd11.prod.outlook.com ([fe80::304c:59be:7ef1:9340]) by MWHPR11MB1774.namprd11.prod.outlook.com ([fe80::304c:59be:7ef1:9340%3]) with mapi id 15.20.3477.029; Wed, 21 Oct 2020 17:34:03 +0000
From: "Kaustubh Inamdar (kinamdar)" <kinamdar@cisco.com>
To: "asap@ietf.org" <asap@ietf.org>
CC: Murray Kucherawy <superuser@gmail.com>, "Gonzalo Salgueiro (gsalguei)" <gsalguei@cisco.com>
Thread-Topic: [Asap] ASAP: Introduction & Way Forward
Thread-Index: AQHWp9Bes6+6yMf/OUqyBv8vSJ8kGA==
Date: Wed, 21 Oct 2020 17:34:03 +0000
Message-ID: <7CC89A67-86D2-47F9-A443-E4ADABB20922@cisco.com>
Accept-Language: en-US
Content-Language: en-GB
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/16.42.20101102
authentication-results: ietf.org; dkim=none (message not signed) header.d=none;ietf.org; dmarc=none action=none header.from=cisco.com;
x-originating-ip: [49.207.212.166]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 82bf9f91-eedb-4524-f38d-08d875e7810d
x-ms-traffictypediagnostic: MW3PR11MB4585:
x-ms-exchange-transport-forked: True
x-microsoft-antispam-prvs: <MW3PR11MB4585889B880E4F01264EB9F7D71C0@MW3PR11MB4585.namprd11.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:10000;
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: vOBbvN3Q1426MkXyPp7/CfWnZy1oApCLkPGhSpnssBua9nDFsetIQ79LQr/dBVc5Wrh0gyhpp9yWh/7YEe6cGcswjTGwt2vEUtDELvUx6mid02S0Mew5oANpC2JYlpKtRT+6eXVp9QZGDfN9v/9Hg0AogxkLkSUG9l2qwQ92QVxTM8dkVojzx11/lm0MusbW6kPOXeQZQrdG/DF8fRz4ByTCQec8sbcQdQPWijfKc5Z1ZCGo01ln+d0qj7qkPBxazGY4a+m5sv/Wed1FokIhJiAFwk7B7s3VJ/zY7Lwrpm3fvSjZ2jEAVdO01AUoVW8C/xwcSMUVPEyD4L9xtO+k018CicO08d0segOHv+hZ7Izlx1q8xrxDxQA5W6xy8H12+R8jHo6/zGw9KD0WQj0OWw==
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:MWHPR11MB1774.namprd11.prod.outlook.com; PTR:; CAT:NONE; SFS:(376002)(136003)(39860400002)(396003)(346002)(366004)(6512007)(5660300002)(83380400001)(66574015)(71200400001)(4326008)(66946007)(66476007)(76116006)(66556008)(64756008)(66446008)(91956017)(6916009)(2616005)(478600001)(26005)(36756003)(54906003)(316002)(33656002)(107886003)(2906002)(55236004)(86362001)(8936002)(6486002)(6506007)(83730400002)(186003)(9326002)(53546011)(8676002); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata: kVww4f5GlngNJTWKiiRNt269WHOhBbNhCsOEBm3v2LMSJLSNVyWVNwSJo66WhdVkFNiUfJCG3rZSHHdwCRy4NJDAPXM+U8NUBCebQhiTv9liYKmDATWGoA4yAWc2UF8LAcOq+Irtuf+x1FDeRr8A+gqdeuVI5ijiCBUkrHbcHCKDCpG5D+FnfkF+mQRHkpCWJAdiZ0jz9RVc9dZBHVm40CnaXPRLaDm30Tzb8DiZ7tUgu2ZK3dpOtKIuut2mPiV10DsPnEIWoXC5sy5hwGr4sWf8u4qL1Asm39Sfxm44/kCOw6rOSAOReL/KcOohPIpBMmzpKV9jw7NROJQCXR29v8jIbj+sWvOHG6iPY7hZ/gScrsih2soOELd6KzbQJJGjBeGpk15as5LXtmpGh8iUay17xTtEMdLAXCdNWv2ZRLjgAlUEgvBYI2mbvV4J8ZyT3vak5TGuX+eKyYr/cvj0qsK2paAO9n7HBrh3zKP1rzpxHhiKonbAc6w4A9cgMwHpqH1zblHYxSzXecBfeD7a9iOd4LvpCsYfDl0MjciD22okvl6EVGER8FTgFGfcbRBGYjKmpQ+9uTRwfkd+eedawsCeyErhB6olOHkdNQb8O34cuCQsDZrtqLQ/yNsmfZRdwcqoTUeyOSxgXGtnsYE2hg==
Content-Type: multipart/alternative; boundary="_000_7CC89A6786D247F9A443E4ADABB20922ciscocom_"
MIME-Version: 1.0
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: MWHPR11MB1774.namprd11.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 82bf9f91-eedb-4524-f38d-08d875e7810d
X-MS-Exchange-CrossTenant-originalarrivaltime: 21 Oct 2020 17:34:03.4936 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 5ae1af62-9505-4097-a69a-c1553ef7840e
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: VaSL0ps+X8jxak1R/P30ziu4/LnAV0JkAPEKQRVccBBvj5XCbsvghPOvJgCyb5TDlva+GUf9L/HN0deCXHXlEw==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: MW3PR11MB4585
X-OriginatorOrg: cisco.com
X-Outbound-SMTP-Client: 173.37.102.11, xch-rcd-001.cisco.com
X-Outbound-Node: alln-core-12.cisco.com
Archived-At: <https://mailarchive.ietf.org/arch/msg/asap/VQ8LcNVwYgWOyrSYOjTeUSLPPx0>
Subject: Re: [Asap] ASAP: Introduction & Way Forward
X-BeenThere: asap@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Automatic SIP trunking And Peering WG <asap.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/asap>, <mailto:asap-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/asap/>
List-Post: <mailto:asap@ietf.org>
List-Help: <mailto:asap-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/asap>, <mailto:asap-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 21 Oct 2020 17:34:29 -0000

Hi,
We have gone ahead and added two new parameters to the capability set, namely:


  1.  A parameter using which a service provider can specify the DID number range allocated to an enterprise.
  2.  A parameter encapsulating the URL of a .pem encoded file containing the certificate chain of the service provider – this is useful for SIP over TLS between enterprise and service provider networks.

Happy to hear any thoughts/comments on the draft.

Thanks,
Kaustubh

From: Asap <asap-bounces@ietf.org> on behalf of "Sreekanth Narayanan (sreenara)" <sreenara=40cisco.com@dmarc.ietf.org>
Date: Monday, 21 September 2020 at 22:35
To: "asap@ietf.org" <asap@ietf.org>
Cc: Cullen Jennings <fluffy@iii.ca>
Subject: Re: [Asap] ASAP: Introduction & Way Forward

Hi All,

Of the four high-level items listed in the previous email, below are considerations for two of them, namely:

  1.  Modifications to the existing capability set
  2.  Inclusion of a STIR specific section.
From the perspective to modifications to the capability set, we suggest an addition - namely the DID Range allocated by an Internet Telephony Service Provider (ITSP) to the enterprise. This DID range may be continuous or disparate. This parameter is useful for an enterprise in configuring dial plans on edge elements such as SBCs. Additionally, most service providers require the calling number presented by an enterprise network for outgoing calls to fall within the allocated DID range.

From the perspective of STIR, a section specific to secure telephony identity could include the following:

a.  Parameter indicating whether the ITSP is STIR/SHAKEN compliant: This parameter could allow the enterprise to determine whether it needs to run a STIR Verification Service (VS) to cryptographically determine whether or not the identity presented by the caller is legitimate. While a STIR compliant provider would have a locally running VS to decode the PASSporT and provide an attestion level of A B or C, the enterprise might want to repeat the exercise and determine how to handle the call based on local policy.

b.  Parameter indicating whether the ITSP supports Rich Call Data (RCD) PASSporTs: Going forward, enterprise networks would be able to sign PASSporTS that contain Rich Call Data (RCD) before presenting the INVITE to their service providers. In such situations, it would be useful for the enterprise to determine whether the service provider supports RCD PASSporTs. Additionally, some of the constructs required to obtain delegate certificates could also be included in the capability set. For example, the directory URL of the ACME server and the scope of delegate certificates an enterprise is authorized to obtain.

Additionally, there could be other considerations for STIR that might warrant discussion:

  1.  STIR OOB CPS hostname/IP for enterprise VS to pull PASSporTs
  2.  In case of CPS federation between service providers, the IP/hostname of the CPS for PASSporT placement for outbound calls from the enterprise.
We would be happy to hear any thoughts you'll have on the above parameters as well as the existing parameters in the capability set. If we have overlooked or missed anything in the list, we would want to close those gaps.

Regards
Sreekanth

________________________________
From: Sreekanth Narayanan (sreenara)
Sent: Wednesday, August 26, 2020 6:02 PM
To: asap@ietf.org <asap@ietf.org>
Cc: Cullen Jennings <fluffy@iii.ca>
Subject: ASAP: Introduction & Way Forward

Hi All,

Thank you for subscribing to the ASAP mailing list. For the benefit of folks that are new to this effort, below is a summary

---
With the advent of SIP trunking, enterprise networks are increasing peering with their service providers over SIP in favour of traditional interconnection methods such as ISDN circuits and analog lines. However, due to the large number of extensions to baseline SIP & RTP and other minor considerations (formatting of the calling number, for example) administrators spend several time cycles in coming up with a configuration block that allows enterprise networks to effectively peer with their service providers over SIP. The following draft (https://tools.ietf.org/html/draft-kinamdar-dispatch-sip-auto-peer-03) defines a parameter set (and a corresponding data model), which when populated by a service provider and which when communicated to an enterprise network provides the administrator sufficient information to configure SIP trunking with the service provider.
---

In order to get the draft referenced above to be formally adopted by the ASAP working group, the authors believe it would be helpful to engage in a discussion about the following so as make the draft representative of the largest possible chunk of considerations that arise/may arise(as related work matures) when deploying SIP trunking with telephony service providers.


  1.  Modifications to the capability set.
  2.  Inclusion of a STIR specific section
  3.  Inclusion of a section for certificate management
  4.  Using WebFinger as a mechanism for service discovery.

We would like to ideally have a separate discussion thread for each of the items listed above. This mail serves as a starting point for those who are new to ASAP and would like to get familiar with the idea. A subsequent mail will cover detailed notes about each of the aforementioned points. In the meantime, we would be happy to address any thoughts or objections that you'll might have.


Regards
Sreekanth