> I would like to accomplish end-to-end identity through SBCs, rather > than hop-by-hop identity that exists with today's RFC4474 through SBCs. > > -d
I agree with Dan here that end-to-end identity through SBCs should be the main driver. A world exists today where intermediaries are modifying signed information, and such modifications breaks RFC 4474 signatures. I understand that omitting elements that are signed leaves security gaps, but the reality is that these modifications are being done for reasons that are valid for all parties involved, mainly to complete the call. Without permitting these changes to occur only ensure that 4474 will not enjoy mass adoption. Adam _______________________________________________ Sip mailing list https://www.ietf.org/mailman/listinfo/sip This list is for NEW development of the core SIP Protocol Use [EMAIL PROTECTED] for questions on current sip Use [EMAIL PROTECTED] for new developments on the application of sip
