[rtcweb] Identity assertion: impact by removal or adding of fingerprints?

Christer Holmberg <christer.holmberg@ericsson.com> Mon, 13 August 2018 06:30 UTC

Return-Path: <christer.holmberg@ericsson.com>
X-Original-To: rtcweb@ietfa.amsl.com
Delivered-To: rtcweb@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 22D8D130E61 for <rtcweb@ietfa.amsl.com>; Sun, 12 Aug 2018 23:30:41 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.31
X-Spam-Level:
X-Spam-Status: No, score=-4.31 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_MED=-2.3, SPF_PASS=-0.001, T_DKIMWL_WL_HIGH=-0.01] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=ericsson.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id mWTt9smV721h for <rtcweb@ietfa.amsl.com>; Sun, 12 Aug 2018 23:30:39 -0700 (PDT)
Received: from sessmg23.ericsson.net (sessmg23.ericsson.net [193.180.251.45]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 2FAC2129385 for <rtcweb@ietf.org>; Sun, 12 Aug 2018 23:30:39 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; d=ericsson.com; s=mailgw201801; c=relaxed/simple; q=dns/txt; i=@ericsson.com; t=1534141837; h=From:Sender:Reply-To:Subject:Date:Message-ID:To:Cc:MIME-Version:Content-Type: Content-Transfer-Encoding:Content-ID:Content-Description:Resent-Date:Resent-From: Resent-Sender:Resent-To:Resent-Cc:Resent-Message-ID:In-Reply-To:References:List-Id: List-Help:List-Unsubscribe:List-Subscribe:List-Post:List-Owner:List-Archive; bh=JGTBHptoWFn8kXXZCIH1aJgyNIEZdCuCuaCvx45rDHg=; b=gOGvIO+TLLi7453ThuWtcLJkftdF7lX3ptFyx2eV1ybjHl7mByycCULr1IbPQTkh 7OpGbBJ9Bh7g13wew+zd/xyUlNpG8TDij/1PuWZ8cMMgzfDpKWDKqLptANOolkDZ rmmTbH7E98itgUsbkNRCMLV2YahHKSEXEYqcNEadfFI=;
X-AuditID: c1b4fb2d-5ecb19c0000055ff-b6-5b71258d5ce3
Received: from ESESBMB502.ericsson.se (Unknown_Domain [153.88.183.115]) by sessmg23.ericsson.net (Symantec Mail Security) with SMTP id 83.38.22015.D85217B5; Mon, 13 Aug 2018 08:30:37 +0200 (CEST)
Received: from ESESBMB503.ericsson.se (153.88.183.170) by ESESBMB502.ericsson.se (153.88.183.169) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256_P256) id 15.1.1466.3; Mon, 13 Aug 2018 08:29:55 +0200
Received: from ESESBMB503.ericsson.se ([153.88.183.186]) by ESESBMB503.ericsson.se ([153.88.183.186]) with mapi id 15.01.1466.003; Mon, 13 Aug 2018 08:29:55 +0200
From: Christer Holmberg <christer.holmberg@ericsson.com>
To: "rtcweb@ietf.org" <rtcweb@ietf.org>
Thread-Topic: Identity assertion: impact by removal or adding of fingerprints?
Thread-Index: AQHUMs8M0o/pIRhEEUmmaI1RsjVoiw==
Date: Mon, 13 Aug 2018 06:29:55 +0000
Message-ID: <D79701DE.34018%christer.holmberg@ericsson.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/14.7.7.170905
x-originating-ip: [153.88.183.157]
Content-Type: multipart/alternative; boundary="_000_D79701DE34018christerholmbergericssoncom_"
MIME-Version: 1.0
X-Brightmail-Tracker: H4sIAAAAAAAAA+NgFupikeLIzCtJLcpLzFFi42KZGbG9WLdXtTDa4MgWTou1/9rZHRg9liz5 yRTAGMVlk5Kak1mWWqRvl8CV8efQZJaCPr6Kv1deMzUwfuTuYuTkkBAwkXiz9iZTFyMXh5DA UUaJOet2s0E43xgl/q6Zwg7hLGOUmNTfztzFyMHBJmAh0f1PG6RbREBd4vLDC+wgtrCAp8S7 Z83sEHE/ifdXJjJC2HoS39+dZQFpZRFQlfg+qxokzCtgLbFg9iwWEJtRQEzi+6k1TCA2s4C4 xK0n85kgjhOQWLLnPDOELSrx8vE/VhBbFGjkhhO32SHiShJberdA9SZI/Dz1khVivqDEyZlP WCYwCs9CMnYWkrJZSMog4joSC3Z/YoOwtSWWLXzNDGOfOfAYqtdaYv6Mh6zIahYwcqxiFC1O LS7OTTcy1kstykwuLs7P08tLLdnECIyhg1t+6+5gXP3a8RCjAAejEg/vLanCaCHWxLLiytxD jBIczEoivBcYCqKFeFMSK6tSi/Lji0pzUosPMUpzsCiJ8+qt2hMlJJCeWJKanZpakFoEk2Xi 4JRqYHQ8vLDVSOxSXUjSzp9lrhy12xh29B5ef3fq3YBg8XDXkqhP0Wvf7ZiV07C1TVavfvmH 4pttqa2Xer2/ucj+MZx6/lZlyqufuhlXfBM2R95Iz+oQ/c37IzAodOnZRTmv92w8tkrgmstb Lg2xoHI7aeUPLiInXzws93SwuiGT8/GQoNS8D43tr5RYijMSDbWYi4oTAZxJ/QedAgAA
Archived-At: <https://mailarchive.ietf.org/arch/msg/rtcweb/N4SVNweX0wB7vgLEsALfA8Nanf8>
Subject: [rtcweb] Identity assertion: impact by removal or adding of fingerprints?
X-BeenThere: rtcweb@ietf.org
X-Mailman-Version: 2.1.27
Precedence: list
List-Id: Real-Time Communication in WEB-browsers working group list <rtcweb.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/rtcweb>, <mailto:rtcweb-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/rtcweb/>
List-Post: <mailto:rtcweb@ietf.org>
List-Help: <mailto:rtcweb-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/rtcweb>, <mailto:rtcweb-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 13 Aug 2018 06:30:41 -0000

Hi,

One thing that came to my mind when working on the SDP Identity attribute pull request.

In WebRTC, and in the draft, we assume that the identity assertion is bound to the fingerprints.

What if fingerprints are removed, or added, during a session. Will that impact the identity assertion?

A fingerprint can be removed if it is only used for one m- section, and that m- section is disabled.

Regards,

Christer