Re: [rtcweb] No Interim on SDES at this juncture

Dan Wing <dwing@cisco.com> Thu, 13 June 2013 19:14 UTC

Return-Path: <dwing@cisco.com>
X-Original-To: rtcweb@ietfa.amsl.com
Delivered-To: rtcweb@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id EBFFC21F9248 for <rtcweb@ietfa.amsl.com>; Thu, 13 Jun 2013 12:14:38 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -110.549
X-Spam-Level:
X-Spam-Status: No, score=-110.549 tagged_above=-999 required=5 tests=[AWL=0.050, BAYES_00=-2.599, RCVD_IN_DNSWL_HI=-8, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 8CA-rHMVqxKK for <rtcweb@ietfa.amsl.com>; Thu, 13 Jun 2013 12:14:34 -0700 (PDT)
Received: from mtv-iport-1.cisco.com (mtv-iport-1.cisco.com [173.36.130.12]) by ietfa.amsl.com (Postfix) with ESMTP id C3E4321F9AA4 for <rtcweb@ietf.org>; Thu, 13 Jun 2013 12:14:33 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=775; q=dns/txt; s=iport; t=1371150873; x=1372360473; h=mime-version:subject:from:in-reply-to:date:cc: content-transfer-encoding:message-id:references:to; bh=2CuCVmNfzDfuJOj68wx9gVfuXgV2BsuoD+JZ6TthZDo=; b=lHo621KTLlxgQGBe13torWB3iIVNuYxVWxTCpmZTlUBnBZDYasAHdf9k Rc58rsvek1wxGIyx3rnkpxCLsZ0Ku43XVmdNMbzsu+un3IxeNUJcywCXU yzqjUUI3rVwThUwmQIEEq/UQVyPStnUmDT6AwJ6W+Wu+46SLOhLSjKhu9 A=;
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: An0FADYZulGrRDoG/2dsb2JhbABbgwkwgna8EIECFnSCIwEBAQMBAQEBNzQLEAsYLicwBhOICAUNu0sEjxAzB4J/YQOJII4hkUKDLxw
X-IronPort-AV: E=Sophos;i="4.87,860,1363132800"; d="scan'208";a="80372637"
Received: from mtv-core-1.cisco.com ([171.68.58.6]) by mtv-iport-1.cisco.com with ESMTP; 13 Jun 2013 19:14:30 +0000
Received: from sjc-vpn2-277.cisco.com (sjc-vpn2-277.cisco.com [10.21.113.21]) by mtv-core-1.cisco.com (8.14.5/8.14.5) with ESMTP id r5DJERr3011883; Thu, 13 Jun 2013 19:14:30 GMT
Content-Type: text/plain; charset="us-ascii"
Mime-Version: 1.0 (Mac OS X Mail 6.5 \(1508\))
From: Dan Wing <dwing@cisco.com>
In-Reply-To: <A650CD42-577B-4A4D-899F-E909469718CC@phonefromhere.com>
Date: Thu, 13 Jun 2013 12:14:30 -0700
Content-Transfer-Encoding: quoted-printable
Message-Id: <A14BC9A3-8A01-437B-AF73-CC54135AB001@cisco.com>
References: <CA+9kkMDnjCNXGV0GU7x6gbbZMf4WiEuVvCRY8_Fix5tmdOB-Kg@mail.gmail.com> <AD220324-EEE7-4800-8512-FD7BADA9EC34@oracle.com> <CA+9kkMDY2Z_5_1uYJ1K_ZmrJB2a1-RE7V3aPqNHQg82DyagjCg@mail.gmail.com> <2975A93F-44DA-4020-B4DE-42E7ED98C08F@oracle.com> <CABkgnnXr+zUW5mUn1nGwz9nxtY29JT5Cz=_84DB_ZxbZGa-kBA@mail.gmail.com> <9F33F40F6F2CD847824537F3C4E37DDF115C8A0F@MCHP04MSX.global-ad.net> <B7D2D5A3-586A-4846-904D-D2D3E6882500@phonefromhere.com> <51B9C244.9050705@alvestrand.no> <A650CD42-577B-4A4D-899F-E909469718CC@phonefromhere.com>
To: Tim Panton <tim@phonefromhere.com>
X-Mailer: Apple Mail (2.1508)
Cc: rtcweb@ietf.org
Subject: Re: [rtcweb] No Interim on SDES at this juncture
X-BeenThere: rtcweb@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: Real-Time Communication in WEB-browsers working group list <rtcweb.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/rtcweb>, <mailto:rtcweb-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/rtcweb>
List-Post: <mailto:rtcweb@ietf.org>
List-Help: <mailto:rtcweb-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/rtcweb>, <mailto:rtcweb-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 13 Jun 2013 19:14:39 -0000

On Jun 13, 2013, at 8:30 AM, Tim Panton <tim@phonefromhere.com> wrote:

> 
> On 13 Jun 2013, at 13:59, Harald Alvestrand wrote:
> 
>> 
>> 
>> The architectural/non-cost argument I see against decrypt/encrypt is "the gateway wants to be able to disclaim the ability to look at the bits".
> 
> Which is implausible because it will probably have to have the DES keys to be able to decode RTCP at least.

RTCP is usually only authenticated (not encrypted), which is the recommendation of RFC3711 (SRTP).

-d


> 
> I'm not sure how much implausible deniability is worth these days.
> 
> T.
> _______________________________________________
> rtcweb mailing list
> rtcweb@ietf.org
> https://www.ietf.org/mailman/listinfo/rtcweb