Re: [MMUSIC] draft-dtls-sdp: Allow offerer to establish DTLS association before it has received the SDP answer?

Christer Holmberg <christer.holmberg@ericsson.com> Mon, 22 May 2017 08:24 UTC

Return-Path: <christer.holmberg@ericsson.com>
X-Original-To: mmusic@ietfa.amsl.com
Delivered-To: mmusic@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E6AB4129BAF for <mmusic@ietfa.amsl.com>; Mon, 22 May 2017 01:24:55 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.219
X-Spam-Level:
X-Spam-Status: No, score=-4.219 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_MED=-2.3, RCVD_IN_MSPIKE_H3=-0.01, RCVD_IN_MSPIKE_WL=-0.01, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id BXSEhM5ok1jX for <mmusic@ietfa.amsl.com>; Mon, 22 May 2017 01:24:54 -0700 (PDT)
Received: from sesbmg23.ericsson.net (sesbmg23.ericsson.net [193.180.251.37]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id CB198129BAB for <mmusic@ietf.org>; Mon, 22 May 2017 01:24:53 -0700 (PDT)
X-AuditID: c1b4fb25-35fff700000055fe-3b-5922a0522f76
Received: from ESESSHC009.ericsson.se (Unknown_Domain [153.88.183.45]) by sesbmg23.ericsson.net (Symantec Mail Security) with SMTP id 16.A7.22014.250A2295; Mon, 22 May 2017 10:24:52 +0200 (CEST)
Received: from ESESSMB109.ericsson.se ([169.254.9.30]) by ESESSHC009.ericsson.se ([153.88.183.45]) with mapi id 14.03.0339.000; Mon, 22 May 2017 10:24:51 +0200
From: Christer Holmberg <christer.holmberg@ericsson.com>
To: Christer Holmberg <christer.holmberg@ericsson.com>, Eric Rescorla <ekr@rtfm.com>, Roman Shpount <roman@telurix.com>
CC: "mmusic@ietf.org" <mmusic@ietf.org>
Thread-Topic: [MMUSIC] draft-dtls-sdp: Allow offerer to establish DTLS association before it has received the SDP answer?
Thread-Index: AQHSzg+3LES5P8e96kuYQ2NFd1Iy/aH22hkAgAAInQCAAAaQgIAASbSwgAjtDoA=
Date: Mon, 22 May 2017 08:24:50 +0000
Message-ID: <D5487BC2.1CF8E%christer.holmberg@ericsson.com>
References: <D5407B8A.1C98B%christer.holmberg@ericsson.com> <CABcZeBN+91+kf8j599CpdiHu62QoOu4Xbkb5xhEEwSQp_LGxFw@mail.gmail.com> <CAD5OKxsFwbQPK2jz-BnS3Re6df2tU1RzuFgWx1f8xKio6NdJTQ@mail.gmail.com> <CABcZeBNoOaZaotNjz35CT=9Vb8ktHysnp9hZZu4=yK3oz5=2Fw@mail.gmail.com> <7594FB04B1934943A5C02806D1A2204B4CBA529B@ESESSMB109.ericsson.se>
In-Reply-To: <7594FB04B1934943A5C02806D1A2204B4CBA529B@ESESSMB109.ericsson.se>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/14.7.2.170228
x-originating-ip: [153.88.183.16]
Content-Type: multipart/alternative; boundary="_000_D5487BC21CF8Echristerholmbergericssoncom_"
MIME-Version: 1.0
X-Brightmail-Tracker: H4sIAAAAAAAAA+NgFtrMIsWRmVeSWpSXmKPExsUyM2K7rm7IAqVIg2OneC1WvD7HbjF1+WMW ixkXpjI7MHssWfKTyWPy4zZmj1tTCgKYo7hsUlJzMstSi/TtErgynv1rZiu44lLRf/sbYwPj V5suRk4OCQETiZ5nu1m6GLk4hASOMEoc37qcDSQhJLCYUWLxl4AuRg4ONgELie5/2iBhEYFK iXfnXrODhJkF1CWuLg4CMYUFqiROPquDqKiW2Hz8IhuE7Sdx5d8sZhCbRUBV4v/LaUwgNq+A tcSuuw2sEFuvMEnsbV7DDpLgBGrYteItWAOjgJjE91NrwBqYBcQlbj2ZzwRxsoDEkj3nmSFs UYmXj/+xgtiiAnoS+/59ZYOIK0rsPNvODNGbIHF6329miMWCEidnPmGZwCg6C8nYWUjKZiEp g4gbSLw/N58ZwtaWWLbwNZStL7Hxy1lGCNta4sHBbyzIahYwcqxiFC1OLU7KTTcy1kstykwu Ls7P08tLLdnECIzKg1t+q+5gvPzG8RCjAAejEg+vZ69SpBBrYllxZe4hRgkOZiURXrZJQCHe lMTKqtSi/Pii0pzU4kOM0hwsSuK8jvsuRAgJpCeWpGanphakFsFkmTg4pRoYfecqfOVv+R7a 8O+DXutyZjWH9P67rHkdhiwnLyyeob3LaJPi6+YM5geVdyf8fMF5P9lzy7fXDXc91vMKfGZI tpfYxF30/eqhSXqrX6fa7ChdJpZkv1u29XnWjj3mT16b1N/9d+PXk4U/OrkCfolOn8H0u4nB KFSQhT/Hs5D1W6jalDaH5k3SSizFGYmGWsxFxYkA0DHJuMYCAAA=
Archived-At: <https://mailarchive.ietf.org/arch/msg/mmusic/-TVF1qYX4DJcSbKWtm6-aa7-rr8>
Subject: Re: [MMUSIC] draft-dtls-sdp: Allow offerer to establish DTLS association before it has received the SDP answer?
X-BeenThere: mmusic@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: Multiparty Multimedia Session Control Working Group <mmusic.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/mmusic>, <mailto:mmusic-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/mmusic/>
List-Post: <mailto:mmusic@ietf.org>
List-Help: <mailto:mmusic-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/mmusic>, <mailto:mmusic-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 22 May 2017 08:24:56 -0000

Hi,

I have updated the PR. The text now allows the offerer to establish the DTLS association before it has received the SDP answer, but that any media received before the answer shall be considered unauthenticated.

https://github.com/cdh4u/draft-dtls-sdp/pull/31

I intend to submit a new version of the draft soon, so please indicate if you don’t agree with the text – together with text that you (and hopefully others) would agree too :)

Regards,

Christer

From: mmusic <mmusic-bounces@ietf.org<mailto:mmusic-bounces@ietf.org>> on behalf of Christer Holmberg <christer.holmberg@ericsson.com<mailto:christer.holmberg@ericsson.com>>
Date: Tuesday 16 May 2017 at 20:12
To: Eric Rescorla <ekr@rtfm.com<mailto:ekr@rtfm.com>>, Roman Shpount <roman@telurix.com<mailto:roman@telurix.com>>
Cc: "mmusic@ietf.org<mailto:mmusic@ietf.org>" <mmusic@ietf.org<mailto:mmusic@ietf.org>>
Subject: Re: [MMUSIC] draft-dtls-sdp: Allow offerer to establish DTLS association before it has received the SDP answer?

Hi,

…

Second, not sending ServerAnswer until signaling answer is received, prevents unverified media and removes significant number of execution paths that would need to be defined both in the dtls-id specification and then tested during development and interop of compliant solutions. I do not want to spend time defining this unless it is absolutely necessary.

I'm not sure what you're talking about in terms of "ServerAnswer". That's not a TLSconcept AFAIK.

I assume he means ServerHello.

Regards,

Christer