Re: [rtcweb] WG Last Call for draft-ietf-rtcweb-stun-consent-freshness

Christer Holmberg <christer.holmberg@ericsson.com> Fri, 22 August 2014 15:59 UTC

Return-Path: <christer.holmberg@ericsson.com>
X-Original-To: rtcweb@ietfa.amsl.com
Delivered-To: rtcweb@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 9B4431A0312 for <rtcweb@ietfa.amsl.com>; Fri, 22 Aug 2014 08:59:14 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.2
X-Spam-Level:
X-Spam-Status: No, score=-4.2 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_MED=-2.3, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id mGGca_EwpaiY for <rtcweb@ietfa.amsl.com>; Fri, 22 Aug 2014 08:59:13 -0700 (PDT)
Received: from sesbmg23.ericsson.net (sesbmg23.ericsson.net [193.180.251.37]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 5CB671A0164 for <rtcweb@ietf.org>; Fri, 22 Aug 2014 08:59:12 -0700 (PDT)
X-AuditID: c1b4fb25-f791c6d00000617b-70-53f768ce2311
Received: from ESESSHC020.ericsson.se (Unknown_Domain [153.88.253.124]) by sesbmg23.ericsson.net (Symantec Mail Security) with SMTP id F8.88.24955.EC867F35; Fri, 22 Aug 2014 17:59:10 +0200 (CEST)
Received: from ESESSMB209.ericsson.se ([169.254.9.136]) by ESESSHC020.ericsson.se ([153.88.183.78]) with mapi id 14.03.0174.001; Fri, 22 Aug 2014 17:59:09 +0200
From: Christer Holmberg <christer.holmberg@ericsson.com>
To: Roman Shpount <roman@telurix.com>, Muthu Arul Mozhi Perumal <muthu.arul@gmail.com>
Thread-Topic: [rtcweb] WG Last Call for draft-ietf-rtcweb-stun-consent-freshness
Thread-Index: AQHPvPawrVflDV3yCU6CP1aFBYsSYJvbPhKAgAABDwCAABPQgIAApK+AgACJRYCAAEiyvg==
Date: Fri, 22 Aug 2014 15:59:09 +0000
Message-ID: <7594FB04B1934943A5C02806D1A2204B1D427B68@ESESSMB209.ericsson.se>
References: <CA+9kkMCZT1XW4LLaJ4Nq2DbrxD59cYnjLo5JXn9fjEb8pyamaQ@mail.gmail.com> <7594FB04B1934943A5C02806D1A2204B1D41CDC3@ESESSMB209.ericsson.se> <CAKz0y8zycsyr9m4BA=-8xOaWkU+Sog5Mbz7K-oN3woqi++mVzg@mail.gmail.com> <53F451CF.10705@alvestrand.no> <001b01cfbc94$fccd5310$f667f930$@co.in> <CAKz0y8zNM3rc3XC6JqrK+d4hXiT5TomhNM+W2twg0+-83-pFow@mail.gmail.com> <CABkgnnUnfB5bskH4zWRfBMdHbSoqftV5Fo_GEXoLt9XCH9Tt_w@mail.gmail.com> <CAD5OKxsT9Vdm0=tjk9WsLAH4ekbAizgyjm--168TrOf8UAYGZw@mail.gmail.com> <CABkgnnXUpibu8kWYmbJJJT2J3RNGXFV8LbceLijgG0U-pGY2xQ@mail.gmail.com> <CAKz0y8z_oBf2efavfOLgzqE1R8sZstefZ1tvwwJLkhRskXZERQ@mail.gmail.com>, <CAD5OKxsSqA=cki_fSaqAPP0GXCv_kHr6571C+K9ze4ceHCGYdQ@mail.gmail.com>
In-Reply-To: <CAD5OKxsSqA=cki_fSaqAPP0GXCv_kHr6571C+K9ze4ceHCGYdQ@mail.gmail.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-originating-ip: [153.88.183.17]
Content-Type: multipart/alternative; boundary="_000_7594FB04B1934943A5C02806D1A2204B1D427B68ESESSMB209erics_"
MIME-Version: 1.0
X-Brightmail-Tracker: H4sIAAAAAAAAA+NgFuphkeLIzCtJLcpLzFFi42KZGfG3Rvdcxvdgg5bdChZ/NvtZzLgwldli 7b92dgdmj52z7rJ7LFnyk8nj1pSCAOYoLpuU1JzMstQifbsEroz3GyazFlxXrzhwaApTA+N1 xS5GTg4JAROJubv+MUHYYhIX7q1n62Lk4hASOMoo8XXWEXYIZwmjxN41t1i7GDk42AQsJLr/ aYM0iAhESLxau4oZxGYWUJe4s/gcO4gtLBAosfjnL1aImiCJaZ0zmUFaRQTCJE4cDAUJswio SvS2PQEr4RXwlbjdNIUFYtUZVokvs0+DJTiB5tw7c44NxGYEOu77qTVMELvEJW49mQ91tIDE kj3nmSFsUYmXj/+BnSkhoCixvF8OojxfYvVDiHJeAUGJkzOfsExgFJ2FZNIsJGWzkJRBxPUk bkydwgZha0ssW/iaGcLWlZjx7xALsvgCRvZVjKLFqcVJuelGxnqpRZnJxcX5eXp5qSWbGIHR d3DLb9UdjJffOB5iFOBgVOLhfeDzPViINbGsuDL3EKM0B4uSOO/Cc/OChQTSE0tSs1NTC1KL 4otKc1KLDzEycXBKNTBmreGL6Zy6ePbX6PInJdOfvNBWnfPYXadsib9+xbffqwL3Pj21birX 3NO6D2xnHX739dovzb0/zC7O5pbh4poZUNxTusaPKUtGi+fosWuCzl6/1KrlV97Y7382L+lB 4PrFt4rs67fda+dZ+TmeeYJR8JILAs9O2X5Z4L1+ltGO5fdergvt2+gSrcRSnJFoqMVcVJwI AH6aOESfAgAA
Archived-At: http://mailarchive.ietf.org/arch/msg/rtcweb/pWRZDUUamX2T-dml7xfTYaidFbQ
Cc: "rtcweb@ietf.org" <rtcweb@ietf.org>
Subject: Re: [rtcweb] WG Last Call for draft-ietf-rtcweb-stun-consent-freshness
X-BeenThere: rtcweb@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: Real-Time Communication in WEB-browsers working group list <rtcweb.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/rtcweb>, <mailto:rtcweb-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/rtcweb/>
List-Post: <mailto:rtcweb@ietf.org>
List-Help: <mailto:rtcweb-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/rtcweb>, <mailto:rtcweb-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 22 Aug 2014 15:59:14 -0000

Hi,



An ICE-lite endpoint must already today *REPLY* to STUN requests - consent freshness does not change that.



But, I don't think an ICE-lite endpoint shall be mandated to *SEND* consent freshness requests.



Regards,



Christer





________________________________
From: rtcweb [rtcweb-bounces@ietf.org] on behalf of Roman Shpount [roman@telurix.com]
Sent: Friday, 22 August 2014 4:37 PM
To: Muthu Arul Mozhi Perumal
Cc: rtcweb@ietf.org
Subject: Re: [rtcweb] WG Last Call for draft-ietf-rtcweb-stun-consent-freshness

On Fri, Aug 22, 2014 at 1:25 AM, Muthu Arul Mozhi Perumal <muthu.arul@gmail.com<mailto:muthu.arul@gmail.com>> wrote:
draft-ietf-rtcweb-stun-consent-freshness is about making the WebRTC browser more secure. It however allows an RTP endpoint (that also does ICE) to use the mechanism to make it more secure or compute RTT or carry network information or whatever. However, requiring every RTP endpoint perform it seems asking too much.

My take:
WebRTC browser - MUST
WebRTC devide - SHOULD
Other RTP entities (including WebRTC gateway) - MAY


 I would say that all full ICE endpoint interworking with WebRTC MUST implement consent freshness. ICE-LITE will not implement, but MUST respond (unless someone defines it, but once you start sending STUN request you might as well do full ICE, so I do not see much point in it). And to conclude strongly encourage full ICE implementation for security and other reasons.
_____________
Roman Shpount