Re: Minutes for the IPSEC meeting in Minneapolis

"Jari Arkko" <jari.arkko@kolumbus.fi> Tue, 17 April 2001 18:25 UTC

Received: from lists.tislabs.com (portal.gw.tislabs.com [192.94.214.101]) by above.proper.com (8.9.3/8.9.3) with ESMTP id LAA08200; Tue, 17 Apr 2001 11:25:01 -0700 (PDT)
Received: by lists.tislabs.com (8.9.1/8.9.1) id NAA21802 Tue, 17 Apr 2001 13:35:05 -0400 (EDT)
Message-ID: <004101c0c76d$d51ec4a0$8a1b6e0a@arenanet.fi>
From: Jari Arkko <jari.arkko@kolumbus.fi>
To: David Law <dlaw001@yahoo.co.uk>, tytso@mit.edu
Cc: ipsec@lists.tislabs.com
References: <20010417110030.7388.qmail@web3101.mail.yahoo.com>
Subject: Re: Minutes for the IPSEC meeting in Minneapolis
Date: Tue, 17 Apr 2001 21:40:10 +0300
MIME-Version: 1.0
Content-Type: text/plain; charset="iso-8859-1"
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 5.50.4133.2400
X-MimeOLE: Produced By Microsoft MimeOLE V5.50.4133.2400
Sender: owner-ipsec@lists.tislabs.com
Precedence: bulk

> I was wondering if anybody knows the document number
> for the 3GPP draft John Iannodis mentioned below. 

I believe the reference is to this document:

http://search.ietf.org/internet-drafts/draft-arkko-map-doi-01.txt

This document deals with using ISAKMP/IKE for securing
a legacy protocol, MAP, in the 3G architecture. 

While we are on the subject, you may also be interested to
know that the 3GPP is planning to use IPsec in gateways
and/or network nodes to secure IP signalling traffic. This
deals only with network internal signaling, not the user's
traffic. That would be handled end-to-end. One interesting
case for that is the IP multimedia service, which is SIP and
RTP based. Various ways to introduce security to SIP have
been discussed but nothing is decided yet, neither on actual
message protection (e.g. PGP, IPsec, S/MIME, ...) nor the
authentication. For the authentication part, a desire propably
exists to reuse the UMTS secret-key -based authentication
scheme due to its low computational costs and availability.

For the actual media flows, the first standard releases
propably don't mandate security yet. But when they do, a good
candidate to run bandwidth efficient and wireless friendly
encryption can be found from 
http://search.ietf.org/internet-drafts/draft-ietf-avt-srtp-00.txt

As always, input is appreciated on these and other topics
related to the 3rd generation mobile networks.

Jari Arkko
Ericsson