Re: [MMUSIC] draft-dtls-sdp: Allow offerer to establish DTLS association before it has received the SDP answer?

Christer Holmberg <christer.holmberg@ericsson.com> Mon, 05 June 2017 15:39 UTC

Return-Path: <christer.holmberg@ericsson.com>
X-Original-To: mmusic@ietfa.amsl.com
Delivered-To: mmusic@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 8DDA4129AFF; Mon, 5 Jun 2017 08:39:23 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.221
X-Spam-Level:
X-Spam-Status: No, score=-4.221 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_MED=-2.3, RCVD_IN_MSPIKE_H3=-0.01, RCVD_IN_MSPIKE_WL=-0.01, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id ipTFT1Dcwbjv; Mon, 5 Jun 2017 08:39:22 -0700 (PDT)
Received: from sessmg23.ericsson.net (sessmg23.ericsson.net [193.180.251.45]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id C7619129B14; Mon, 5 Jun 2017 08:39:20 -0700 (PDT)
X-AuditID: c1b4fb2d-5a49e9a000000d37-3d-59357b27be98
Received: from ESESSHC021.ericsson.se (Unknown_Domain [153.88.183.81]) by sessmg23.ericsson.net (Symantec Mail Security) with SMTP id 1C.82.03383.72B75395; Mon, 5 Jun 2017 17:39:19 +0200 (CEST)
Received: from ESESSMB109.ericsson.se ([169.254.9.30]) by ESESSHC021.ericsson.se ([153.88.183.81]) with mapi id 14.03.0339.000; Mon, 5 Jun 2017 17:36:05 +0200
From: Christer Holmberg <christer.holmberg@ericsson.com>
To: Cullen Jennings <fluffy@iii.ca>, Roman Shpount <roman@telurix.com>
CC: Ben Campbell <ben@nostrum.com>, Eric Rescorla <ekr@rtfm.com>, Martin Thomson <martin.thomson@gmail.com>, "mmusic-chairs@ietf.org" <mmusic-chairs@ietf.org>, mmusic <mmusic@ietf.org>
Thread-Topic: [MMUSIC] draft-dtls-sdp: Allow offerer to establish DTLS association before it has received the SDP answer?
Thread-Index: AQHS3gR6cOUoIT8u10KHxHCOXLs6qqIWZoyA
Date: Mon, 05 Jun 2017 15:36:05 +0000
Message-ID: <7594FB04B1934943A5C02806D1A2204B4CBDB1E4@ESESSMB109.ericsson.se>
References: <D551D683.1D429%christer.holmberg@ericsson.com> <22C94242-218F-4724-AE92-E0B1E8DC2C82@nostrum.com> <21E8BA9D-E442-4DBC-8A7D-CEDFD5F54F8B@iii.ca> <CAD5OKxujAuzJt4QD6JXKHkVd4JB_nO5Th6KXjavMBww=W4644Q@mail.gmail.com> <6125EAB1-A827-4E0F-B756-78F85BB411CD@iii.ca>
In-Reply-To: <6125EAB1-A827-4E0F-B756-78F85BB411CD@iii.ca>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-originating-ip: [153.88.183.154]
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-Brightmail-Tracker: H4sIAAAAAAAAA+NgFlrOIsWRmVeSWpSXmKPExsUyM2J7oK56tWmkwZPz/BbzO0+zW6x4fY7d 4sP6H4wW1878Y7Q4v3M9k8XU5Y9ZLGZcmMrswO6xc9Zddo8lS34yeVw+/5HRY9bOJywekx+3 MXvcmlIQwBbFZZOSmpNZllqkb5fAlfHvcknBSdaKpcv2MzcwrmPpYuTkkBAwkbi+9AJ7FyMX h5DAEUaJ3ff3sEE4ixglzrYfAXI4ONgELCS6/2mDNIgIuEnsfv8VrIZZYB+jxPYzXWCThAWq JO6s/scKUVQtsfn4RbBeEQEjiQsbYkFMFgEVidl/QkAqeAV8Jc7eaWSFWDWdSeLLgUtMIAlO ASuJLVe/gdmMAmIS30+tAbOZBcQlbj2ZzwRxtIDEkj3nmSFsUYmXjyHWSggoSSy6/RmqXkdi we5PbBC2tsSyha+ZIRYLSpyc+YRlAqPoLCRjZyFpmYWkZRaSlgWMLKsYRYtTi4tz042M9VKL MpOLi/Pz9PJSSzYxAqPv4JbfujsYV792PMQowMGoxMP7n800Uog1say4MvcQowQHs5IIr1YU UIg3JbGyKrUoP76oNCe1+BCjNAeLkjivw74LEUIC6YklqdmpqQWpRTBZJg5OqQbGSJF4ubRV z3ZXZL5+/IF5ofUiyWm/zyjaHdzCJ7NScs7pFv7P2jFWqwsYNi4+vfTSBk7zmutcq33fRv68 GCDRuczx2L/EE93HJ6X+nKLHJVDw4+DdZQlrX/kV5KZwzZAWWp384kDzDZHPky6GyeTkLF1+ Nn3apBMVF/4yxx2NvaTxesX8i6uF6pVYijMSDbWYi4oTASxBFju6AgAA
Archived-At: <https://mailarchive.ietf.org/arch/msg/mmusic/caVWTSWaQPiBv6ORS_n1SUgXKUk>
Subject: Re: [MMUSIC] draft-dtls-sdp: Allow offerer to establish DTLS association before it has received the SDP answer?
X-BeenThere: mmusic@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: Multiparty Multimedia Session Control Working Group <mmusic.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/mmusic>, <mailto:mmusic-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/mmusic/>
List-Post: <mailto:mmusic@ietf.org>
List-Help: <mailto:mmusic-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/mmusic>, <mailto:mmusic-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 05 Jun 2017 15:39:24 -0000

Hi,

>> 1. Starting DTLS handshake until the corresponded answer is received is NOT RECOMMENDED since it can
>> result in unauthenticated media. If unauthenticated media is played to the end user, in cases such as early 
>> media in SIP calls, this should be indicated to the end user.
>
> No. Doing the handshake as quickly as possible is recommend - it's what you do with the media before
> you know who you are talking to that is the issue you are concerned with. And knowing who you are 
> talking often involves much more than checking the fingerprint. So I don't agree this is not recommended. 

Could you suggest text that you WOULD agree to? :)

Regards,

Christer