Re: [MMUSIC] draft-uberti-mmusic-nombis and (D)TLS

Justin Uberti <juberti@google.com> Mon, 23 March 2015 03:56 UTC

Return-Path: <juberti@google.com>
X-Original-To: mmusic@ietfa.amsl.com
Delivered-To: mmusic@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id A18691A87C0 for <mmusic@ietfa.amsl.com>; Sun, 22 Mar 2015 20:56:55 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.788
X-Spam-Level:
X-Spam-Status: No, score=-0.788 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FM_FORGED_GMAIL=0.622, HTML_MESSAGE=0.001, J_CHICKENPOX_55=0.6, SPF_PASS=-0.001, T_RP_MATCHES_RCVD=-0.01] autolearn=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id zscEtl5_mHEv for <mmusic@ietfa.amsl.com>; Sun, 22 Mar 2015 20:56:54 -0700 (PDT)
Received: from mail-ig0-x22c.google.com (mail-ig0-x22c.google.com [IPv6:2607:f8b0:4001:c05::22c]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 4A41F1A87BF for <mmusic@ietf.org>; Sun, 22 Mar 2015 20:56:54 -0700 (PDT)
Received: by igbqf9 with SMTP id qf9so28852919igb.1 for <mmusic@ietf.org>; Sun, 22 Mar 2015 20:56:53 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=20120113; h=mime-version:in-reply-to:references:from:date:message-id:subject:to :cc:content-type; bh=abJ+lTkw2/0LkfmcWgywrKPZSIPkeN7qD/Hw8WRB/Gg=; b=kMd3qKaWNVDcryxE1GIdyr/Vev0Y6XTxxCKkFt3oCa2wVh239j6PrEt02iXQZTj6pm V0ztQh7ccWSEPDLGCoLb6w89jy5WOZiit3JGykWeA2P+xIlWl2KTzIbCE+iOXe2ZFBJu p1hWSSDr8OYhGs8GigYeiAKhKZGGkVZOC1kX48gdQhgIrtYHw9pLgNi/bvGk3MgPHuZv SDUEuxvIept/UYntguX6kHwAEWCdGTXtxNgU9OX0IWCaRXapBuT0cHRXeEHJgqq21M0S cXdyfvldhLJrEcHJQXC/vL98G+7tDbmirOIm0EjfckEmF8BzlFUBUzJBKEzASOAJyldJ vdcg==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:mime-version:in-reply-to:references:from:date :message-id:subject:to:cc:content-type; bh=abJ+lTkw2/0LkfmcWgywrKPZSIPkeN7qD/Hw8WRB/Gg=; b=kl+LlhmqIGkkWmkRLgxv5t7zzxkmxRBvZS+MiVrHrPAQT8xjITiNdiPlJ4gF8orK+2 lVLZM/vfY6HVvAPb4IvImdpERiJ1/bx0Xe8M+PM3rMgKEXP4CCJblLIq7LGrGbr2J9Ym sy+ehmfg+Bij77VAtsCOvCs1tiZveVlIOepcur+cpSPahlM0S5O87dNvKBwt5EqJwWOI bUAmnsvpr90DKyfo/k3WymQpLcdsTUK4ul5D+Tu+agfj7hUs0YNvkr/HazJJ2Dxz4gPh iv3/vTIiDhkUSkhglvIVrV86jY1aJaULXBdAfjNFp0TGGlLjLLs+3NjYct1PKNXZ6ieN 8NpQ==
X-Gm-Message-State: ALoCoQm5kKEHLB7hp7FnfEHSLjAu8at3lzit/kch2mnSjYASKDEVvjTZ5p4SS2mHQOWTc6W3rtks
X-Received: by 10.107.9.88 with SMTP id j85mr148905674ioi.60.1427083013543; Sun, 22 Mar 2015 20:56:53 -0700 (PDT)
MIME-Version: 1.0
Received: by 10.64.64.42 with HTTP; Sun, 22 Mar 2015 20:56:33 -0700 (PDT)
In-Reply-To: <CAD5OKxtB5qWQ1yYdGEOdKD55y0HPTGkY_hP0uV=PXEkRnZfcBg@mail.gmail.com>
References: <550E0F1A.2090303@ericsson.com> <BLU406-EAS2095DB481DB8142DA8BC0BB930C0@phx.gbl> <7594FB04B1934943A5C02806D1A2204B1D7729E2@ESESSMB209.ericsson.se> <CAD5OKxtB5qWQ1yYdGEOdKD55y0HPTGkY_hP0uV=PXEkRnZfcBg@mail.gmail.com>
From: Justin Uberti <juberti@google.com>
Date: Sun, 22 Mar 2015 20:56:33 -0700
Message-ID: <CAOJ7v-0pQ=smq1EzpMrQBULm+mjscDXf=fpapdvMWtVX4FkWVw@mail.gmail.com>
To: Roman Shpount <roman@telurix.com>
Content-Type: multipart/alternative; boundary="001a113f8d341688820511eca828"
Archived-At: <http://mailarchive.ietf.org/arch/msg/mmusic/DGhoUJG18gZwpyY_w8vPdWv7rSY>
Cc: mmusic <mmusic@ietf.org>, Ari Keränen <ari.keranen@ericsson.com>, "draft-uberti-mmusic-nombis@tools.ietf.org" <draft-uberti-mmusic-nombis@tools.ietf.org>, Christer Holmberg <christer.holmberg@ericsson.com>
Subject: Re: [MMUSIC] draft-uberti-mmusic-nombis and (D)TLS
X-BeenThere: mmusic@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: Multiparty Multimedia Session Control Working Group <mmusic.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/mmusic>, <mailto:mmusic-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/mmusic/>
List-Post: <mailto:mmusic@ietf.org>
List-Help: <mailto:mmusic-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/mmusic>, <mailto:mmusic-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 23 Mar 2015 03:56:55 -0000

Alas, an ICE ufrag doesn't uniquely identify an ICE virtual connection;
with ICE forking you can have N virtual connections from the same ufrag.

A lfrag:rfrag tuple is closer, but even this does not work, because a) an
ICE restart changes lfrag/rfrag without invalidating the connection, and b)
because a ufrag can be shared across multiple m= lines (and thereby ICE
connections).

The closest thing is m-line, keeping in mind that bundled m-lines use the
virtual connection of the m-line onto which they are bundled.

On Sun, Mar 22, 2015 at 6:10 PM, Roman Shpount <roman@telurix.com> wrote:

> On Sun, Mar 22, 2015 at 8:08 PM, Christer Holmberg <
> christer.holmberg@ericsson.com> wrote:
>
>>
>> What was discussed in RTCWEB was to, instead of binding a DTLS connection
>> to a 5-tuple, bind it to a "virtual connection". A "virtual connection"
>> would be the set of all candidate pairs associated with a.... something.
>>
>> Whether "something" is an m- line, a BUNDLE group, a complete SDP, or
>> something else, hasn't been discussed - as far as I remember (please
>> correct me if I'm wrong).
>>
>>
> I was proposing that "something" is ICE ufrag, i.e. all 5-tuples for which
> a ICE/STUN bind request with the particular ufrag is received gets
> associated with the same "virtual" connection.
> _____________
> Roman Shpount
>
>
> _______________________________________________
> mmusic mailing list
> mmusic@ietf.org
> https://www.ietf.org/mailman/listinfo/mmusic
>
>