[MMUSIC] draft-dtls-sdp: Allow offerer to establish DTLS association before it has received the SDP answer?

Christer Holmberg <christer.holmberg@ericsson.com> Tue, 16 May 2017 06:47 UTC

Return-Path: <christer.holmberg@ericsson.com>
X-Original-To: mmusic@ietfa.amsl.com
Delivered-To: mmusic@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 415ED129BA0 for <mmusic@ietfa.amsl.com>; Mon, 15 May 2017 23:47:33 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.819
X-Spam-Level:
X-Spam-Status: No, score=-2.819 tagged_above=-999 required=5 tests=[BAYES_05=-0.5, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_MED=-2.3, RCVD_IN_MSPIKE_H3=-0.01, RCVD_IN_MSPIKE_WL=-0.01, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id O6-cm-4cm6ub for <mmusic@ietfa.amsl.com>; Mon, 15 May 2017 23:47:31 -0700 (PDT)
Received: from sesbmg23.ericsson.net (sesbmg23.ericsson.net [193.180.251.37]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 4DFA612EB41 for <mmusic@ietf.org>; Mon, 15 May 2017 23:43:28 -0700 (PDT)
X-AuditID: c1b4fb25-08bff70000006049-7b-591a9f8dbec1
Received: from ESESSHC024.ericsson.se (Unknown_Domain [153.88.183.90]) by sesbmg23.ericsson.net (Symantec Mail Security) with SMTP id 03.FE.24649.D8F9A195; Tue, 16 May 2017 08:43:26 +0200 (CEST)
Received: from ESESSMB109.ericsson.se ([169.254.9.104]) by ESESSHC024.ericsson.se ([153.88.183.90]) with mapi id 14.03.0339.000; Tue, 16 May 2017 08:43:24 +0200
From: Christer Holmberg <christer.holmberg@ericsson.com>
To: "mmusic@ietf.org" <mmusic@ietf.org>
Thread-Topic: draft-dtls-sdp: Allow offerer to establish DTLS association before it has received the SDP answer?
Thread-Index: AQHSzg+3LES5P8e96kuYQ2NFd1Iy/Q==
Date: Tue, 16 May 2017 06:43:24 +0000
Message-ID: <D5407B8A.1C98B%christer.holmberg@ericsson.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/14.7.2.170228
x-originating-ip: [153.88.183.18]
Content-Type: multipart/alternative; boundary="_000_D5407B8A1C98Bchristerholmbergericssoncom_"
MIME-Version: 1.0
X-Brightmail-Tracker: H4sIAAAAAAAAA+NgFvrFLMWRmVeSWpSXmKPExsUyM2J7lG7ffKlIg1kT1CymLn/M4sDosWTJ T6YAxigum5TUnMyy1CJ9uwSujIe7LQsWS1esnWvUwPhMvIuRk0NCwESitfE6UxcjF4eQwBFG ic7rK9kgnCWMEm8WzmbtYuTgYBOwkOj+pw3SICKgLvF1bw8ziC0skCsx5XMHC0S8SGL56XmM ELaexN+ty8BqWARUJQ6ceMwGMoZXwFpi7rQgkDCjgJjE91NrmEBsZgFxiVtP5jNB3CMgsWTP eWYIW1Ti5eN/rCC2KNDIff++skHEFSU+vtrHCNGbIDF9wQ52EJtXQFDi5MwnLBMYhWYhGTsL SdksJGUQcR2JBbs/sUHY2hLLFr5mhrHPHHgM1MsBZFtLdM9XQVaygJFjFaNocWpxUm66kbFe alFmcnFxfp5eXmrJJkZgjBzc8lt1B+PlN46HGAU4GJV4eD0mSkUKsSaWFVfmHmKU4GBWEuGt MwEK8aYkVlalFuXHF5XmpBYfYpTmYFES53XcdyFCSCA9sSQ1OzW1ILUIJsvEwSnVwFg3Zdrl swk/dh8N8wrd++reAtHPjz2j1qn/0fXQNONnnOCfa7B15yEVu/lb2fyOl5i5b6nTM9nwqkPV 8g6HRdqqi5Ed/Jdz5af93eut552rKBsza8LUx8fyVmgFTlthvmvCy93f6mfm23HuUl9ydck5 Q75r5X8NedP4khhN2vWrzhYmXGGdrKvEUpyRaKjFXFScCACO+Ia0jQIAAA==
Archived-At: <https://mailarchive.ietf.org/arch/msg/mmusic/lKx9nUqAJnRt25q6balGq2y6BQI>
Subject: [MMUSIC] draft-dtls-sdp: Allow offerer to establish DTLS association before it has received the SDP answer?
X-BeenThere: mmusic@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: Multiparty Multimedia Session Control Working Group <mmusic.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/mmusic>, <mailto:mmusic-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/mmusic/>
List-Post: <mailto:mmusic@ietf.org>
List-Help: <mailto:mmusic-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/mmusic>, <mailto:mmusic-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 16 May 2017 06:47:33 -0000

Hi,

The pull request based on the WGLC comments from Roman S and Martin T,
suggests text saying that if an offerer receives ClientHello it must not
send ServerHello until it has received the answer (that carries the
fingerprint associated with the DTLS association).

It has been claimed that we DO need to allow the offerer to establish the
DTLS association BEFORE it has received the answer, in order to support
certain early media use-cases. Until the offerer has received the answer,
such media would be considered un-authenticated. Others do not want to allow
it, due to security concerns.

We need to find a solution to this, so any input is welcome.

The pull request: https://github.com/cdh4u/draft-dtls-sdp/pull/31/files

Regards,

Christer