> I would like to accomplish end-to-end identity through SBCs, rather
> than hop-by-hop identity that exists with today's RFC4474 through SBCs.
>
> -d

I agree with Dan here that end-to-end identity through SBCs should be the main 
driver. A world exists today where intermediaries are modifying signed 
information, and such modifications breaks RFC 4474 signatures. I understand 
that omitting elements that are signed leaves security gaps, but the reality is 
that these modifications are being done for reasons that are valid for all 
parties involved, mainly to complete the call.  Without permitting these 
changes to occur only ensure that 4474 will not enjoy mass adoption.

Adam

_______________________________________________
Sip mailing list  https://www.ietf.org/mailman/listinfo/sip
This list is for NEW development of the core SIP Protocol
Use [EMAIL PROTECTED] for questions on current sip
Use [EMAIL PROTECTED] for new developments on the application of sip

Reply via email to