>-----Original Message-----
>From: Jiri Kuthan [mailto:[EMAIL PROTECTED]] 
>Sent: Thursday, July 25, 2002 12:44 PM
>To: Shan Lu; 'James Undery'; [EMAIL PROTECTED]
>Cc: [EMAIL PROTECTED]
>Subject: RE: [Sip] Authentication and ACK
>
>
>>Are you saying the proxy should just proxy along any ACK?
>
>Yes.
>
>
>>Why can't a stateful proxy correlate ACK with INVITE and find out
>>whether the INVITE is being challenged and handle ACK accordingly?
>
>Remembering whether an INVITE was authenticated properly does not
>gain you knowledge that ACK is coming from the same person -- the ACK
>is a brand-new message which might have been sent by anyone else in
>posession of IP access.

True. However on the flip side, if INVITE failed authentication, ACK
sure should not be proxied along. It's not a big deal, just not nice. 

Shan Lu 

>
>-Jiri
>
>

_______________________________________________
Sip-implementors mailing list
[EMAIL PROTECTED]
http://lists.cs.columbia.edu/mailman/listinfo/sip-implementors

Reply via email to