Re: [AVTCORE] I-D Action:draft-ietf-avtcore-srtp-vbr-audio-02.txt

"Christian Hoene" <hoene@uni-tuebingen.de> Sat, 28 May 2011 05:35 UTC

Return-Path: <hoene@uni-tuebingen.de>
X-Original-To: avt@ietfa.amsl.com
Delivered-To: avt@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 2EA6DE0676 for <avt@ietfa.amsl.com>; Fri, 27 May 2011 22:35:39 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.249
X-Spam-Level:
X-Spam-Status: No, score=-6.249 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, HELO_EQ_DE=0.35, RCVD_IN_DNSWL_MED=-4]
Received: from mail.ietf.org ([64.170.98.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 0ygMas5Tsxsb for <avt@ietfa.amsl.com>; Fri, 27 May 2011 22:35:38 -0700 (PDT)
Received: from mx05.uni-tuebingen.de (mx05.uni-tuebingen.de [134.2.3.4]) by ietfa.amsl.com (Postfix) with ESMTP id 2244CE064A for <avt@ietf.org>; Fri, 27 May 2011 22:35:37 -0700 (PDT)
Received: from hoeneT60 (p5B2003CE.dip0.t-ipconnect.de [91.32.3.206]) (authenticated bits=0) by mx05.uni-tuebingen.de (8.13.6/8.13.6) with ESMTP id p4S5ZKgo021021 (version=TLSv1/SSLv3 cipher=AES128-SHA bits=128 verify=NO); Sat, 28 May 2011 07:35:27 +0200
From: Christian Hoene <hoene@uni-tuebingen.de>
To: Jean-Marc Valin <jean-marc.valin@octasic.com>, 'Colin Perkins' <csp@csperkins.org>
Date: Sat, 28 May 2011 07:35:20 +0200
Organization: Universitat Tubingen
Message-ID: <000c01cc1cf9$0e6b28c0$2b417a40$@uni-tuebingen.de>
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
X-Mailer: Microsoft Outlook 14.0
thread-index: Acwc+PbkmpQ0zdyVR6GQ+3LHZNplDQ==
Content-Language: de
X-AntiVirus: NOT checked by Avira MailGate (version: 3.1.2; host: mx05)
Cc: avt@ietf.org, amw@cs.unc.edu
Subject: Re: [AVTCORE] I-D Action:draft-ietf-avtcore-srtp-vbr-audio-02.txt
X-BeenThere: avt@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: Audio/Video Transport Core Maintenance <avt.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/avt>, <mailto:avt-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/avt>
List-Post: <mailto:avt@ietf.org>
List-Help: <mailto:avt-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/avt>, <mailto:avt-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 28 May 2011 05:35:39 -0000

Hi Collin and Jean-Marc,

you might want to read 
http://www.cs.unc.edu/~amw/resources/hooktonfoniks.pdf
which confirms your security concerns in respect to variable rate speech
coding.

With best regards,

 Christian Hoene




> -----Original Message-----
> From: avt-bounces@ietf.org [mailto:avt-bounces@ietf.org] On Behalf Of
> Internet-Drafts@ietf.org
> Sent: Thursday, April 28, 2011 10:15 AM
> To: i-d-announce@ietf.org
> Cc: avt@ietf.org
> Subject: [AVTCORE] I-D Action:draft-ietf-avtcore-srtp-vbr-audio-02.txt
> 
> A New Internet-Draft is available from the on-line Internet-Drafts
directories.
> This draft is a work item of the Audio/Video Transport Core Maintenance
> Working Group of the IETF.
> 
> 
> 	Title           : Guidelines for the use of Variable Bit Rate Audio
with
> Secure RTP
> 	Author(s)       : C. Perkins, J. Valin
> 	Filename        : draft-ietf-avtcore-srtp-vbr-audio-02.txt
> 	Pages           : 7
> 	Date            : 2011-04-28
> 
> This memo discusses potential security issues that arise when using
> variable bit rate audio with the secure RTP profile.  Guidelines to
> mitigate these issues are suggested.
> 
> A URL for this Internet-Draft is:
>
http://www.ietf.org/internet-drafts/draft-ietf-avtcore-srtp-vbr-audio-02.txt
> 
> Internet-Drafts are also available by anonymous FTP at:
> ftp://ftp.ietf.org/internet-drafts/
> 
> Below is the data which will enable a MIME compliant mail reader
> implementation to automatically retrieve the ASCII version of the
> Internet-Draft.