Re: [rtcweb] DTLS, DTLS-SRTP, and 5-tuples

Simon Perreault <sperreault@jive.com> Wed, 04 March 2015 20:02 UTC

Return-Path: <sperreault@jive.com>
X-Original-To: rtcweb@ietfa.amsl.com
Delivered-To: rtcweb@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 856171ACE3F for <rtcweb@ietfa.amsl.com>; Wed, 4 Mar 2015 12:02:17 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.001
X-Spam-Level:
X-Spam-Status: No, score=-2.001 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, J_CHICKENPOX_14=0.6, RCVD_IN_DNSWL_LOW=-0.7, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id cMlphYYaoHQ2 for <rtcweb@ietfa.amsl.com>; Wed, 4 Mar 2015 12:02:16 -0800 (PST)
Received: from mail-qa0-f49.google.com (mail-qa0-f49.google.com [209.85.216.49]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id A31531AC42A for <rtcweb@ietf.org>; Wed, 4 Mar 2015 12:01:50 -0800 (PST)
Received: by mail-qa0-f49.google.com with SMTP id w8so35391294qac.8 for <rtcweb@ietf.org>; Wed, 04 Mar 2015 12:01:49 -0800 (PST)
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:message-id:date:from:user-agent:mime-version:to :cc:subject:references:in-reply-to:content-type :content-transfer-encoding; bh=jmTcSzOlwmC46UfrRTWs36PFcpo18w1oNR9TFDo56GE=; b=fpCInBPU3DYXt+pbU/lRwn5q9+/0w7WlXr6qKqCoQ8XYpDNiND4ClNBNyPZoSTdSEF T4tbBeC+S2mqJkFOvzoV3q5smVaXZ3Z7AebGNk+ioefBT/xBZcuRhf8/cS2dW7aebKh9 upet7D3oWrSbf8x8fD+cAgOibwzgCydVc87ULBKA78WG91ZkGsedhcMw2HtrKig2Olo4 +K23ymgmlyc0a7/XGwBm8+0xrhbBxXGK8jMF4Iwy0nQnkENXUML+0ooBWaWFEh4DDBQl eqN8iw+wam4WdiLk47LQZA0cnFi0n9/MwcHOk276cFxHk3Pw0tT7dC8kqYTDaJUIACtM aeXA==
X-Gm-Message-State: ALoCoQlous4F/kZ5Bn6AYE4/N8P5U5Im6eNnfq8EoTkIp8F19M6iYjoNDaU/diU2Dqi2vbAeT1bB
X-Received: by 10.140.147.131 with SMTP id 125mr8041153qht.81.1425499309816; Wed, 04 Mar 2015 12:01:49 -0800 (PST)
Received: from [192.168.1.43] (modemcable233.42-178-173.mc.videotron.ca. [173.178.42.233]) by mx.google.com with ESMTPSA id w1sm2764330qal.0.2015.03.04.12.01.48 (version=TLSv1.2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Wed, 04 Mar 2015 12:01:48 -0800 (PST)
Message-ID: <54F764AB.40408@jive.com>
Date: Wed, 04 Mar 2015 15:01:47 -0500
From: Simon Perreault <sperreault@jive.com>
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.10; rv:31.0) Gecko/20100101 Thunderbird/31.5.0
MIME-Version: 1.0
To: Roman Shpount <roman@telurix.com>, Christer Holmberg <christer.holmberg@ericsson.com>
References: <54F74B02.1070902@jive.com> <CAD5OKxs8JYG3-Vvndi59ZrdPE7UTj22ozD4tcWTHgzWrHv=q7Q@mail.gmail.com> <54F756B2.60408@jive.com> <7594FB04B1934943A5C02806D1A2204B1D726AD8@ESESSMB209.ericsson.se> <CAD5OKxu7py3HbrFjxTDZS5ECFzx7vd=wpjve-gT6gWwksjEu+g@mail.gmail.com>
In-Reply-To: <CAD5OKxu7py3HbrFjxTDZS5ECFzx7vd=wpjve-gT6gWwksjEu+g@mail.gmail.com>
Content-Type: text/plain; charset="utf-8"; format="flowed"
Content-Transfer-Encoding: 8bit
Archived-At: <http://mailarchive.ietf.org/arch/msg/rtcweb/hxi0DSoDgBgZuO3ufzOriREqt_Q>
Cc: "rtcweb@ietf.org" <rtcweb@ietf.org>
Subject: Re: [rtcweb] DTLS, DTLS-SRTP, and 5-tuples
X-BeenThere: rtcweb@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: Real-Time Communication in WEB-browsers working group list <rtcweb.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/rtcweb>, <mailto:rtcweb-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/rtcweb/>
List-Post: <mailto:rtcweb@ietf.org>
List-Help: <mailto:rtcweb-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/rtcweb>, <mailto:rtcweb-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 04 Mar 2015 20:02:17 -0000

Le 2015-03-04 14:59, Roman Shpount a écrit :
> On Wed, Mar 4, 2015 at 2:54 PM, Christer Holmberg
> <christer.holmberg@ericsson.com <mailto:christer.holmberg@ericsson.com>>
> wrote:
>
>     Didn't we last week agree that, if the underlying transport changes,
>     the DTLS connection MUST be re-established?
>
>     Jumping from one candidate to another is a transport change, isn't it?
>
>
> In cases where ICE is used jump from on candidate to another should not
> constitute a transport change. A change in ICE ufrag should constitute
> the transport change. All ICE candidates are a single virtual transport
> channel. Without this a lot of ICE setup scenarios, such as rapid
> nomination, break down. Even changes in the c= line address, m=line port
> port, or list of candidates is not a transport change if ufrag stays the
> same.
>
> In cases where ICE is not used, changes of address in c= line or port in
> m= line are a transport change.

I'm in full agreement.

Simon