>-----Original Message----- >From: Jiri Kuthan [mailto:[EMAIL PROTECTED]] >Sent: Thursday, July 25, 2002 12:44 PM >To: Shan Lu; 'James Undery'; [EMAIL PROTECTED] >Cc: [EMAIL PROTECTED] >Subject: RE: [Sip] Authentication and ACK > > >>Are you saying the proxy should just proxy along any ACK? > >Yes. > > >>Why can't a stateful proxy correlate ACK with INVITE and find out >>whether the INVITE is being challenged and handle ACK accordingly? > >Remembering whether an INVITE was authenticated properly does not >gain you knowledge that ACK is coming from the same person -- the ACK >is a brand-new message which might have been sent by anyone else in >posession of IP access.
True. However on the flip side, if INVITE failed authentication, ACK sure should not be proxied along. It's not a big deal, just not nice. Shan Lu > >-Jiri > > _______________________________________________ Sip-implementors mailing list [EMAIL PROTECTED] http://lists.cs.columbia.edu/mailman/listinfo/sip-implementors
