Re: [rtcweb] SRTP not mandatory-to-use

Roman Shpount <roman@telurix.com> Wed, 11 January 2012 23:10 UTC

Return-Path: <roman@telurix.com>
X-Original-To: rtcweb@ietfa.amsl.com
Delivered-To: rtcweb@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 7486421F8707 for <rtcweb@ietfa.amsl.com>; Wed, 11 Jan 2012 15:10:40 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.976
X-Spam-Level:
X-Spam-Status: No, score=-2.976 tagged_above=-999 required=5 tests=[AWL=-0.000, BAYES_00=-2.599, FM_FORGED_GMAIL=0.622, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_LOW=-1]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Rs501uknugW2 for <rtcweb@ietfa.amsl.com>; Wed, 11 Jan 2012 15:10:39 -0800 (PST)
Received: from mail-iy0-f172.google.com (mail-iy0-f172.google.com [209.85.210.172]) by ietfa.amsl.com (Postfix) with ESMTP id B8C3421F86F4 for <rtcweb@ietf.org>; Wed, 11 Jan 2012 15:10:23 -0800 (PST)
Received: by iaae16 with SMTP id e16so1586093iaa.31 for <rtcweb@ietf.org>; Wed, 11 Jan 2012 15:10:11 -0800 (PST)
Received: by 10.42.153.6 with SMTP id k6mr1038371icw.30.1326323411885; Wed, 11 Jan 2012 15:10:11 -0800 (PST)
Received: from mail-pw0-f44.google.com (mail-pw0-f44.google.com [209.85.160.44]) by mx.google.com with ESMTPS id rc7sm11412476igb.0.2012.01.11.15.10.10 (version=TLSv1/SSLv3 cipher=OTHER); Wed, 11 Jan 2012 15:10:11 -0800 (PST)
Received: by pbdd12 with SMTP id d12so1029694pbd.31 for <rtcweb@ietf.org>; Wed, 11 Jan 2012 15:10:09 -0800 (PST)
MIME-Version: 1.0
Received: by 10.68.74.164 with SMTP id u4mr3070258pbv.85.1326323408419; Wed, 11 Jan 2012 15:10:08 -0800 (PST)
Received: by 10.68.44.197 with HTTP; Wed, 11 Jan 2012 15:10:08 -0800 (PST)
In-Reply-To: <BLU152-W62B3148D9899099ED240D1939E0@phx.gbl>
References: <CAErhfrwu322=HTS0JZhum9EGfb73KmYS6CU_KMESyzEWhtvg2w@mail.gmail.com> <CAKhHsXHnT2p7yncha5-BQ=-Lzk3-N+tuijM-UqwfP1mPUi173A@mail.gmail.com> <BLU152-W1140980759D89AC3C1D0CA93940@phx.gbl> <CA+9kkMBdX7YT1tPj5M3VrzAPKa6tXNGZVvvhjW9V4oOEC7g_kA@mail.gmail.com> <CAOJ7v-1_qMoHBb3K7rV=hG9EadqL=xn4KEdG0zdWnKZU9_TipQ@mail.gmail.com> <4AEFFC17-EF17-40F2-B83B-0B0CC44AD2C3@cisco.com> <CAKhHsXEes+Lf+uKdTrjXoy+3PMy2uNumNL-W-0s4_xRXW6FiZg@mail.gmail.com> <4F0CAC8C.8010203@wonderhamster.org> <1D062974A4845E4D8A343C6538049202074ABD3A@XMB-BGL-414.cisco.com> <387F9047F55E8C42850AD6B3A7A03C6C01DCF907@inba-mail02.sonusnet.com> <CALiegfkejnU2rTe-FibUVxTrRS9SivkhGXB5eK+FhD8Vu6iTMA@mail.gmail.com> <387F9047F55E8C42850AD6B3A7A03C6C01DCF9FC@inba-mail02.sonusnet.com> <CALiegfn07bS58B+4ZyzRTnO4LCpw1e96dnqpSM+TT1y3QG2Zwg@mail.gmail.com> <387F9047F55E8C42850AD6B3A7A03C6C01DCFBC1@inba-mail02.sonusnet.com> <CAOJ7v-20+yL7r+_ODx_czHTiujXZZWESaZRB7MQjhvScg3RFtw@mail.gmail.com> <4F0DFD0B.2000009@jesup.org> <CAD5OKxsOqzXDz3WYhLejDtB-zGUcZYMCApHxPyU3XV++_RZhBg@mail.gmail.com> <BLU152-W62B3148D9899099ED240D1939E0@phx.gbl>
Date: Wed, 11 Jan 2012 18:10:08 -0500
Message-ID: <CAD5OKxv+5=L2TvGr5ySRgAMRqk17ssqwpf9Hm4vWCrDvxiSDLQ@mail.gmail.com>
From: Roman Shpount <roman@telurix.com>
To: Bernard Aboba <bernard_aboba@hotmail.com>
Content-Type: multipart/alternative; boundary="bcaec54693e79dbc4f04b648bba2"
Cc: randell-ietf@jesup.org, rtcweb@ietf.org
Subject: Re: [rtcweb] SRTP not mandatory-to-use
X-BeenThere: rtcweb@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: Real-Time Communication in WEB-browsers working group list <rtcweb.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/rtcweb>, <mailto:rtcweb-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/rtcweb>
List-Post: <mailto:rtcweb@ietf.org>
List-Help: <mailto:rtcweb-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/rtcweb>, <mailto:rtcweb-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 11 Jan 2012 23:10:40 -0000

On Wed, Jan 11, 2012 at 6:07 PM, Bernard Aboba <bernard_aboba@hotmail.com>wrote:

> [BA] By "certificate validation" do you mean PKI support?  Or are we
> talking about something along the lines of what is in SIP DTLS/SRTP or the
> RTCWEB security draft Appendix (e.g. support for self-signed certs and
> fingerprint validation)?
>

Yes, what I am talking about is any type of remote identity validation
and/or remote fingerprint validation.
_____________
Roman Shpount