Re: R: R: [Sip] a question about IETF draft location conveyance 09

Dean Willis <dean.willis@softarmor.com> Sat, 24 November 2007 01:33 UTC

Return-path: <sip-bounces@ietf.org>
Received: from [127.0.0.1] (helo=stiedprmman1.va.neustar.com) by megatron.ietf.org with esmtp (Exim 4.43) id 1IvjtJ-0007Ro-I0; Fri, 23 Nov 2007 20:33:05 -0500
Received: from sip by megatron.ietf.org with local (Exim 4.43) id 1IvjtI-0007Oe-6k for sip-confirm+ok@megatron.ietf.org; Fri, 23 Nov 2007 20:33:04 -0500
Received: from [10.91.34.44] (helo=ietf-mx.ietf.org) by megatron.ietf.org with esmtp (Exim 4.43) id 1IvjtH-0007Mm-SY for sip@ietf.org; Fri, 23 Nov 2007 20:33:03 -0500
Received: from nylon.softarmor.com ([66.135.38.164]) by ietf-mx.ietf.org with esmtp (Exim 4.43) id 1IvjtD-0007Dd-BB for sip@ietf.org; Fri, 23 Nov 2007 20:33:03 -0500
Received: from [192.168.1.4] (65-65-155-30.dsl.bigbend.net [65.65.155.30] (may be forged)) (authenticated bits=0) by nylon.softarmor.com (8.13.8/8.13.8/Debian-3) with ESMTP id lAO1WpS3028222 (version=TLSv1/SSLv3 cipher=AES128-SHA bits=128 verify=NOT); Fri, 23 Nov 2007 19:32:54 -0600
In-Reply-To: <A30B7FF9263D5340AD5DECB88A243C42015FEE67@EXBK03.personale.dir.unibo.it>
References: <4742BDF5.9040302@unibo.it> <XFE-SJC-212qXLFfJNw000012bf@xfe-sjc-212.amer.cisco.com> <p06240607c36a38613297@[67.169.50.136]> <XFE-SJC-211EAOeIiGX000013f8@xfe-sjc-211.amer.cisco.com> <p06240608c36a4849ecf3@[67.169.50.136]> <XFE-SJC-212AOmAfjuU000013bb@xfe-sjc-212.amer.cisco.com> <p0624060ac36a6ec4f1c2@[67.169.50.136]> <A30B7FF9263D5340AD5DECB88A243C42015FEE65@EXBK03.personale.dir.unibo.it> <4745BDC7.30003@gmx.net> <A30B7FF9263D5340AD5DECB88A243C42015FEE67@EXBK03.personale.dir.unibo.it>
Mime-Version: 1.0 (Apple Message framework v752.3)
Content-Type: text/plain; charset="US-ASCII"; delsp="yes"; format="flowed"
Message-Id: <A3636D5F-1B88-4C38-8091-F083AD517D47@softarmor.com>
Content-Transfer-Encoding: 7bit
From: Dean Willis <dean.willis@softarmor.com>
Subject: Re: R: R: [Sip] a question about IETF draft location conveyance 09
Date: Fri, 23 Nov 2007 19:32:41 -0600
To: daniel grotti <daniel.grotti@unibo.it>
X-Mailer: Apple Mail (2.752.3)
X-Spam-Score: 0.0 (/)
X-Scan-Signature: ffa9dfbbe7cc58b3fa6b8ae3e57b0aa3
Cc: IETF SIP List <sip@ietf.org>, "James M. Polk" <jmpolk@cisco.com>
X-BeenThere: sip@ietf.org
X-Mailman-Version: 2.1.5
Precedence: list
List-Id: Session Initiation Protocol <sip.ietf.org>
List-Unsubscribe: <https://www1.ietf.org/mailman/listinfo/sip>, <mailto:sip-request@ietf.org?subject=unsubscribe>
List-Post: <mailto:sip@ietf.org>
List-Help: <mailto:sip-request@ietf.org?subject=help>
List-Subscribe: <https://www1.ietf.org/mailman/listinfo/sip>, <mailto:sip-request@ietf.org?subject=subscribe>
Errors-To: sip-bounces@ietf.org

On Nov 22, 2007, at 12:08 PM, daniel grotti wrote:

> Hi all,
> so why don't emphasize this point in the next draft, saying :  
> "Proxy server MUST not read messages with "recipient=endpoint"  
> paramenter setted".
> This is my point of you.
>
>


because from a security standpoint, this prohibition is meaningless.  
Intermediate nodes can and will read anything that's in plaintext,  
and SOMEBODY will come up with a rationale, in some context or  
another, for doing so.

And has been pointed out, doing so does not appear to create a  
compatibility problem. It doesn't break the protocol. It might defeat  
security-through-obscurity. It might be rude, or otherwise socially  
unacceptable. But those don't qualify for a MUST level protocol  
prohibition.

--
Dean



_______________________________________________
Sip mailing list  https://www1.ietf.org/mailman/listinfo/sip
This list is for NEW development of the core SIP Protocol
Use sip-implementors@cs.columbia.edu for questions on current sip
Use sipping@ietf.org for new developments on the application of sip