[dispatch] Fwd: New Version Notification for draft-johansson-dispatch-dane-sip-01.txt

"Olle E. Johansson" <oej@edvina.net> Thu, 09 January 2014 16:09 UTC

Return-Path: <oej@edvina.net>
X-Original-To: dispatch@ietfa.amsl.com
Delivered-To: dispatch@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 8FA3A1ACCE0 for <dispatch@ietfa.amsl.com>; Thu, 9 Jan 2014 08:09:40 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.551
X-Spam-Level:
X-Spam-Status: No, score=-1.551 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, HELO_EQ_SE=0.35, SPF_PASS=-0.001] autolearn=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id ERqzH2jKsDFL for <dispatch@ietfa.amsl.com>; Thu, 9 Jan 2014 08:09:38 -0800 (PST)
Received: from smtp7.webway.se (smtp7.webway.se [IPv6:2a02:920:212e::205]) by ietfa.amsl.com (Postfix) with ESMTP id E2F931ADEB5 for <dispatch@ietf.org>; Thu, 9 Jan 2014 08:09:37 -0800 (PST)
Received: from [192.168.40.13] (h87-96-134-129.dynamic.se.alltele.net [87.96.134.129]) by smtp7.webway.se (Postfix) with ESMTPA id A5C6693C2A1; Thu, 9 Jan 2014 16:09:27 +0000 (UTC)
Content-Type: text/plain; charset="us-ascii"
Mime-Version: 1.0 (Mac OS X Mail 7.1 \(1827\))
From: "Olle E. Johansson" <oej@edvina.net>
Date: Thu, 09 Jan 2014 17:09:25 +0100
Content-Transfer-Encoding: quoted-printable
Message-Id: <2ECFFECF-84DE-4F74-B515-716EE03800B3@edvina.net>
References: <20140109154214.22968.46430.idtracker@ietfa.amsl.com>
To: "dispatch@ietf.org list" <dispatch@ietf.org>
X-Mailer: Apple Mail (2.1827)
Subject: [dispatch] Fwd: New Version Notification for draft-johansson-dispatch-dane-sip-01.txt
X-BeenThere: dispatch@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: DISPATCH Working Group Mail List <dispatch.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dispatch>, <mailto:dispatch-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/dispatch/>
List-Post: <mailto:dispatch@ietf.org>
List-Help: <mailto:dispatch-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dispatch>, <mailto:dispatch-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 09 Jan 2014 16:09:40 -0000

Hi!

Just a tiny edit to remove the "updates 5922" label.

Taking this to sipcore seems perfect to me.

/O

Begin forwarded message:

> From: internet-drafts@ietf.org
> Subject: New Version Notification for draft-johansson-dispatch-dane-sip-01.txt
> Date: 9 Jan 2014 16:42:14 GMT+1
> To: Olle E. Johansson <oej@edvina.net>, "Olle E. Johansson" <oej@edvina.net>
> 
> 
> A new version of I-D, draft-johansson-dispatch-dane-sip-01.txt
> has been successfully submitted by Olle E. Johansson and posted to the
> IETF repository.
> 
> Name:		draft-johansson-dispatch-dane-sip
> Revision:	01
> Title:		TLS sessions in SIP using DNS-based Authentication of Named Entities (DANE) TLSA records
> Document date:	2014-01-09
> Group:		Individual Submission
> Pages:		9
> URL:            http://www.ietf.org/internet-drafts/draft-johansson-dispatch-dane-sip-01.txt
> Status:         https://datatracker.ietf.org/doc/draft-johansson-dispatch-dane-sip/
> Htmlized:       http://tools.ietf.org/html/draft-johansson-dispatch-dane-sip-01
> Diff:           http://www.ietf.org/rfcdiff?url2=draft-johansson-dispatch-dane-sip-01
> 
> Abstract:
>   Use of TLS in the SIP protocol is defined in multiple documents,
>   starting with RFC 3261.  The actual verification that happens when
>   setting up a SIP TLS connection to a SIP server based on a SIP URI is
>   described in detail in RFC 5922 - SIP Domain Certificates.
> 
>   In this document, an alternative method is defined, using DNS-Based
>   Authentication of Named Entities (DANE).  By looking up TLSA DNS
>   records and using DNSsec protection of the required queries,
>   including lookups for NAPTR and SRV records, a SIP Client can verify
>   the identity of the TLS SIP server in a different way, matching on
>   the SRV host name in the X.509 PKIX certificate instead of the SIP
>   domain.  This provides more scalability in hosting solutions and make
>   it easier to use standard CA certificates (if needed at all).
> 
> 
> 
> 
> Please note that it may take a couple of minutes from the time of submission
> until the htmlized version and diff are available at tools.ietf.org.
> 
> The IETF Secretariat
>