RFC 7340 on Secure Telephone Identity Problem Statement and Requirements

rfc-editor@rfc-editor.org Tue, 23 September 2014 20:01 UTC

Return-Path: <wwwrun@rfc-editor.org>
X-Original-To: ietf-announce@ietfa.amsl.com
Delivered-To: ietf-announce@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 1D9BE1A8881; Tue, 23 Sep 2014 13:01:56 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -107.688
X-Spam-Level:
X-Spam-Status: No, score=-107.688 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_HI=-5, RP_MATCHES_RCVD=-0.786, SPF_HELO_PASS=-0.001, SPF_PASS=-0.001, USER_IN_WHITELIST=-100] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id opxIxuPZTuMN; Tue, 23 Sep 2014 13:01:51 -0700 (PDT)
Received: from rfc-editor.org (rfc-editor.org [4.31.198.49]) by ietfa.amsl.com (Postfix) with ESMTP id AB2B21A88AE; Tue, 23 Sep 2014 13:01:29 -0700 (PDT)
Received: by rfc-editor.org (Postfix, from userid 30) id 32C73181C6D; Tue, 23 Sep 2014 13:01:22 -0700 (PDT)
To: ietf-announce@ietf.org, rfc-dist@rfc-editor.org
Subject: RFC 7340 on Secure Telephone Identity Problem Statement and Requirements
X-PHP-Originating-Script: 6000:ams_util_lib.php
From: rfc-editor@rfc-editor.org
Message-Id: <20140923200122.32C73181C6D@rfc-editor.org>
Date: Tue, 23 Sep 2014 13:01:22 -0700
Archived-At: http://mailarchive.ietf.org/arch/msg/ietf-announce/PoX75fdVAX_2xQFKHwYUp4RXB2g
Cc: drafts-update-ref@iana.org, stir@ietf.org, rfc-editor@rfc-editor.org
X-BeenThere: ietf-announce@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
Reply-To: ietf@ietf.org
List-Id: "IETF announcement list. No discussions." <ietf-announce.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ietf-announce>, <mailto:ietf-announce-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/ietf-announce/>
List-Post: <mailto:ietf-announce@ietf.org>
List-Help: <mailto:ietf-announce-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ietf-announce>, <mailto:ietf-announce-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 23 Sep 2014 20:01:59 -0000

A new Request for Comments is now available in online RFC libraries.

        
        RFC 7340

        Title:      Secure Telephone Identity Problem Statement 
                    and Requirements 
        Author:     J. Peterson, H. Schulzrinne, H. Tschofenig
        Status:     Informational
        Stream:     IETF
        Date:       September 2014
        Mailbox:    jon.peterson@neustar.biz, 
                    hgs@cs.columbia.edu, 
                    Hannes.Tschofenig@gmx.net
        Pages:      25
        Characters: 65026
        Updates/Obsoletes/SeeAlso:   None

        I-D Tag:    draft-ietf-stir-problem-statement-05.txt

        URL:        https://www.rfc-editor.org/rfc/rfc7340.txt

Over the past decade, Voice over IP (VoIP) systems based on SIP have
replaced many traditional telephony deployments.  Interworking VoIP
systems with the traditional telephone network has reduced the
overall level of calling party number and Caller ID assurances by
granting attackers new and inexpensive tools to impersonate or
obscure calling party numbers when orchestrating bulk commercial
calling schemes, hacking voicemail boxes, or even circumventing
multi-factor authentication systems trusted by banks.  Despite
previous attempts to provide a secure assurance of the origin of SIP
communications, we still lack effective standards for identifying the
calling party in a VoIP session.  This document examines the reasons
why providing identity for telephone numbers on the Internet has
proven so difficult and shows how changes in the last decade may
provide us with new strategies for attaching a secure identity to SIP
sessions.  It also gives high-level requirements for a solution in
this space.

This document is a product of the Secure Telephone Identity Revisited Working Group of the IETF.


INFORMATIONAL: This memo provides information for the Internet community.
It does not specify an Internet standard of any kind. Distribution of
this memo is unlimited.

This announcement is sent to the IETF-Announce and rfc-dist lists.
To subscribe or unsubscribe, see
  https://www.ietf.org/mailman/listinfo/ietf-announce
  https://mailman.rfc-editor.org/mailman/listinfo/rfc-dist

For searching the RFC series, see https://www.rfc-editor.org/search
For downloading RFCs, see https://www.rfc-editor.org/rfc.html

Requests for special distribution should be addressed to either the
author of the RFC in question, or to rfc-editor@rfc-editor.org.  Unless
specifically noted otherwise on the RFC itself, all RFCs are for
unlimited distribution.


The RFC Editor Team
Association Management Solutions, LLC