Re: [SWMP] My understanding so far

"Jay C. Weber" <jweber@mediamachines.com> Fri, 31 August 2007 22:23 UTC

Return-path: <swmp-bounces@ietf.org>
Received: from [127.0.0.1] (helo=stiedprmman1.va.neustar.com) by megatron.ietf.org with esmtp (Exim 4.43) id 1IREu9-0005OG-1A; Fri, 31 Aug 2007 18:23:53 -0400
Received: from [10.90.34.44] (helo=chiedprmail1.ietf.org) by megatron.ietf.org with esmtp (Exim 4.43) id 1IREu7-0005OB-Vx for swmp@ietf.org; Fri, 31 Aug 2007 18:23:52 -0400
Received: from mx5.roble.com ([206.40.34.5]) by chiedprmail1.ietf.org with esmtp (Exim 4.43) id 1IREu7-0005Cm-IY for swmp@ietf.org; Fri, 31 Aug 2007 18:23:51 -0400
X-Scanned-By: PostConf Email Solutions
Received: from [192.168.1.100] (h-66-134-93-202.snvacaid.covad.net [66.134.93.202]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) (Authenticated sender: jay) by mail.mediamachines.com (Postfix) with ESMTP id C632A364444; Fri, 31 Aug 2007 15:23:48 -0700 (PDT)
Message-ID: <46D894F6.1090901@mediamachines.com>
Date: Fri, 31 Aug 2007 15:23:50 -0700
From: "Jay C. Weber" <jweber@mediamachines.com>
User-Agent: Thunderbird 2.0.0.6 (Windows/20070728)
MIME-Version: 1.0
To: Roland Weber <ossfwot@dubioso.net>
Subject: Re: [SWMP] My understanding so far
References: <OFFA72042F.751DC694-ON85257348.006F170E-85257348.0070D266@lotus.com> <46D88058.8070008@dubioso.net>
In-Reply-To: <46D88058.8070008@dubioso.net>
X-Spam-Score: 1.7 (+)
X-Scan-Signature: e5ba305d0e64821bf3d8bc5d3bb07228
Cc: swmp@ietf.org
X-BeenThere: swmp@ietf.org
X-Mailman-Version: 2.1.5
Precedence: list
List-Id: Discussion of a Simple Wide-area Multiuser-3D Protocol <swmp.ietf.org>
List-Unsubscribe: <https://www1.ietf.org/mailman/listinfo/swmp>, <mailto:swmp-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www1.ietf.org/pipermail/swmp>
List-Post: <mailto:swmp@ietf.org>
List-Help: <mailto:swmp-request@ietf.org?subject=help>
List-Subscribe: <https://www1.ietf.org/mailman/listinfo/swmp>, <mailto:swmp-request@ietf.org?subject=subscribe>
Content-Type: multipart/mixed; boundary="===============1239729904=="
Errors-To: swmp-bounces@ietf.org

Roland Weber wrote:
I did not understand that about tickets.
    
Tickets are used similar to session cookies. When a network
element X opens the initial channel to Y, it sends a message
"HELLO, I am X and here is your ticket YtoX for contacting me".
Yes and tickets usually have an expiration time/date (a date is part of the ticket and the whole thing is digitally-signed to prevent tampering) in order to address the man-in-the-middle attacks to which you alluded before.

jay
--
Jay C. Weber, Ph.D.
CTO, Media Machines Inc.
650-279-2311
_______________________________________________
SWMP mailing list
SWMP@ietf.org
https://www1.ietf.org/mailman/listinfo/swmp