Re: [MMUSIC] draft-saito-mmusic-ipsec-negotiation-req-02

Makoto Saito <ma.saito@nttv6.jp> Thu, 09 March 2006 12:48 UTC

Received: from [127.0.0.1] (helo=stiedprmman1.va.neustar.com) by megatron.ietf.org with esmtp (Exim 4.43) id 1FHKYl-0000ce-BE; Thu, 09 Mar 2006 07:48:03 -0500
Received: from [10.91.34.44] (helo=ietf-mx.ietf.org) by megatron.ietf.org with esmtp (Exim 4.43) id 1FHKYj-0000cZ-LF for mmusic@ietf.org; Thu, 09 Mar 2006 07:48:01 -0500
Received: from gura.nttv6.jp ([210.163.36.2]) by ietf-mx.ietf.org with esmtp (Exim 4.43) id 1FHKYf-0000Q9-9D for mmusic@ietf.org; Thu, 09 Mar 2006 07:48:01 -0500
Received: from nirvana.nttv6.jp (nirvana.nttv6.jp [IPv6:2001:218:1f01:1::2687]) by gura.nttv6.jp (NTTv6MTA) with ESMTP id B69A41FE4E; Thu, 9 Mar 2006 21:47:49 +0900 (JST)
Received: from [127.0.0.1] (localhost [IPv6:::1]) by nirvana.nttv6.jp (NTTv6MTA) with ESMTP id DD01212650E; Thu, 9 Mar 2006 21:47:47 +0900 (JST)
Message-ID: <441023FF.3030002@nttv6.jp>
Date: Thu, 09 Mar 2006 21:47:59 +0900
From: Makoto Saito <ma.saito@nttv6.jp>
User-Agent: Mozilla Thunderbird 1.0 (Windows/20041206)
X-Accept-Language: ja, en-us, en
MIME-Version: 1.0
To: Mark Baugher <mbaugher@cisco.com>
Subject: Re: [MMUSIC] draft-saito-mmusic-ipsec-negotiation-req-02
References: <440E6DEA.1070907@nttv6.jp> <1039E087-16A4-442E-94C7-93EE59ADB4FB@cisco.com>
In-Reply-To: <1039E087-16A4-442E-94C7-93EE59ADB4FB@cisco.com>
Content-Type: text/plain; charset="ISO-2022-JP"
Content-Transfer-Encoding: 7bit
X-Spam-Score: 0.0 (/)
X-Scan-Signature: 7aafa0432175920a4b3e118e16c5cb64
Cc: mmusic@ietf.org
X-BeenThere: mmusic@ietf.org
X-Mailman-Version: 2.1.5
Precedence: list
List-Id: Multiparty Multimedia Session Control Working Group <mmusic.ietf.org>
List-Unsubscribe: <https://www1.ietf.org/mailman/listinfo/mmusic>, <mailto:mmusic-request@ietf.org?subject=unsubscribe>
List-Post: <mailto:mmusic@ietf.org>
List-Help: <mailto:mmusic-request@ietf.org?subject=help>
List-Subscribe: <https://www1.ietf.org/mailman/listinfo/mmusic>, <mailto:mmusic-request@ietf.org?subject=subscribe>
Errors-To: mmusic-bounces@ietf.org

Hi Mark,

Thank you very much for your comments.
I think whether IKE is more secure or not depends on the security
method used for SDP in sdescriptions spec.
That is, while you can use S/MIME based on strong algorithm,
you can also use just sips transport which will reveal the contents
of SDP to the intermediaries.

On the contrary, even IKE is not always a secure solution if you use
the week authentication key such as short PSK.
I think the mechanism of sdes itself is not the problem.

Best regards,

Mark Baugher wrote:
> hi,
>   I have read the draft and conclude that if you want to establish  
> IPsec connections between devices in the home or anyplace else, it  
> should be done through IKE.  I believe that SDP security descriptions  
> is a poor solution for this application for a variety of reasons.   The 
> first of which being that IKE is a more secure solution.
> 
> Best Regards, Mark
> On Mar 7, 2006, at 9:38 PM, Makoto Saito wrote:
> 
>> Hello everyone,
>>
>> I submitted a revised individual I-D about IPsec negotiation using  SDP.
>> Although I submitted it a week ago, it's been taking a time before
>> it appears in the IETF web site.
>> Until it appears in the archive, you can find it here:
>>
>> http://www.nttv6.jp/~ma.saito/draft-saito-mmusic-ipsec-negotiation- 
>> req-02.txt
>>
>> Receiving feedback from the previous meeting in Vancouver,
>> I mainly changed the application scenarios section
>> in order to make it simple.
>>
>> Although it's been taking time since the last discussion,
>> I'd like to discuss this issue in this ML and in the meeting
>> in Dallas again. And, hopefully the technical specs, too.
>>
>> Thanks,
>>

-- 
--------------------------------------------------------

Makoto Saito

NTT Communications Corporation


_______________________________________________
mmusic mailing list
mmusic@ietf.org
https://www1.ietf.org/mailman/listinfo/mmusic