Dan,

I just took a look at this. I have a few questions:

1) Because you only sign the selected attributes from the SDP, the rest is not secured. That seems like an acceptable restriction if you assume there will be a media-terminating SBC in the path.

But what about other body parts? I gather they won't be signed either. That seems like a potential problem as we start to identify need for various extra body parts.

2) What about "offerless" initial INVITEs?

3) What about messages that don't use SDP at all?

        Thanks,
        Paul






_______________________________________________
Sip mailing list  https://www1.ietf.org/mailman/listinfo/sip
This list is for NEW development of the core SIP Protocol
Use [EMAIL PROTECTED] for questions on current sip
Use [EMAIL PROTECTED] for new developments on the application of sip

Reply via email to