> -----Original Message-----
> From: [email protected] [mailto:[email protected]] On Behalf Of Dean
> Willis
> Sent: Monday, March 30, 2009 12:09 AM
> 
> The MAIN reason, it seems to me, to want to change the SDP (and
> especially the key fingerprint) undetectably is to enable intercept
> (lawful or otherwise) without detectability. That just won't do.

No, that's not at all the main reason.  RFC4474 is already not end-to-end.  
It's signed by a middlebox in the originating domain, and verified by a 
middlebox in the terminating domain.  There is ample opportunity to change the 
SDP at either of those domains to perform lawful intercept. 

The main reason to change SDP is to steer the media, for numerous reasons.

-hadriel
_______________________________________________
Sip mailing list  https://www.ietf.org/mailman/listinfo/sip
This list is for NEW development of the core SIP Protocol
Use [email protected] for questions on current sip
Use [email protected] for new developments on the application of sip

Reply via email to