Re: [rtcweb] Identity and PSTN gateways

"Olle E. Johansson" <oej@edvina.net> Tue, 03 April 2012 16:25 UTC

Return-Path: <oej@edvina.net>
X-Original-To: rtcweb@ietfa.amsl.com
Delivered-To: rtcweb@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id C092E11E8157 for <rtcweb@ietfa.amsl.com>; Tue, 3 Apr 2012 09:25:51 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.6
X-Spam-Level:
X-Spam-Status: No, score=-2.6 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, NO_RELAYS=-0.001]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id qjjDMzyt-vi0 for <rtcweb@ietfa.amsl.com>; Tue, 3 Apr 2012 09:25:51 -0700 (PDT)
Received: from smtp7.webway.se (smtp7.webway.se [IPv6:2a02:920:212e::205]) by ietfa.amsl.com (Postfix) with ESMTP id 17B1A11E8152 for <rtcweb@ietf.org>; Tue, 3 Apr 2012 09:25:50 -0700 (PDT)
Received: from [IPv6:2001:16d8:cc57:1000::42:1003] (unknown [IPv6:2001:16d8:cc57:1000::42:1003]) by smtp7.webway.se (Postfix) with ESMTPA id 5B10B754A8A2; Tue, 3 Apr 2012 16:25:47 +0000 (UTC)
Mime-Version: 1.0 (Apple Message framework v1257)
Content-Type: text/plain; charset="iso-8859-1"
From: "Olle E. Johansson" <oej@edvina.net>
In-Reply-To: <CAD5OKxt9f1xiMjNSqk=gmB+Lm4fa=FsrDN_YsxkJwE25HYLMhQ@mail.gmail.com>
Date: Tue, 03 Apr 2012 18:25:46 +0200
Content-Transfer-Encoding: quoted-printable
Message-Id: <36657126-D663-409A-9D34-D3AF70ED2CD7@edvina.net>
References: <4F7AF40D.3010706@alvestrand.no> <A61DB206-1B56-44B5-AADE-E4A820D76B93@edvina.net> <CAD5OKxsn5X2g+kcJjShGQHfOMdadhDFxwDEodZK+RaxnK=a=+A@mail.gmail.com> <CALiegfmvHWKSFeLEpX2RFYtT_=4OcmJNkYBrGXvOdu5m-MVroA@mail.gmail.com> <CAD5OKxt9f1xiMjNSqk=gmB+Lm4fa=FsrDN_YsxkJwE25HYLMhQ@mail.gmail.com>
To: Roman Shpount <roman@telurix.com>
X-Mailer: Apple Mail (2.1257)
Cc: "rtcweb@ietf.org" <rtcweb@ietf.org>
Subject: Re: [rtcweb] Identity and PSTN gateways
X-BeenThere: rtcweb@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: Real-Time Communication in WEB-browsers working group list <rtcweb.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/rtcweb>, <mailto:rtcweb-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/rtcweb>
List-Post: <mailto:rtcweb@ietf.org>
List-Help: <mailto:rtcweb-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/rtcweb>, <mailto:rtcweb-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 03 Apr 2012 16:25:51 -0000

3 apr 2012 kl. 18:01 skrev Roman Shpount:

> 
> On Tue, Apr 3, 2012 at 11:53 AM, Iñaki Baz Castillo <ibc@aliax.net> wrote:
> 2012/4/3 Roman Shpount <roman@telurix.com>:
> > I agree with you that you can only identify the gateway. Above this, I think
> > the whole discussion is pointless since there are no security guarantees
> > within PSTN. A million of people can be listening in. You can be connected
> > to a completely different number then the one you've dialed due to LNP, call
> > routing rules, call forwarding, or anything else. If you are dialing
> > internationally your traffic often goes over unsecured public internet. So
> > far, 99.999% of all phone calls were unsecured, tapped into, recorded and
> > listen by anybody who possessed even the moderate desire to do so. If you
> > start talking about calls coming from PSTN, you have even less guarantees
> > about accuracy of the caller ID information. You are currently trying to
> > secure the edge and provide identity on top of this mess.
> 
> 
> I don't understand why we are trying to resolve eternal PSTN problems in rtcweb.
> 
> I do not, even though you repeatedly say that you want to fix the Internet via WebRTC. All I am saying that the PSTN gateway cannot provide identity on behalf of the phone number. PSTN phone number is not an identity and we should never display something that says "You have a secure communication with +1800YOURBANK". You can only say "You have a secure communication with ACME Telecom Phone Gateway" 

Exactly. Thanks.

/O