One use-case that I've heard frequently is that you don't want ordinary people monitoring the CEO's phone. (Although most people aren't aware that any SIP element in the universe can monitor any phone now.) So we probably want to think about handling user-to-user SUBSCRIBE authorization fairly soon.
And in that case, the subscribing phone is on the same network as the target phone, so we can't depend on a NAT/etc. to prevent direct access to the target phone. This points out an unpleasant technical requirement: We need to be able to configure the phone to refuse dialog SUBSCRIBEs that do not come from the proxy. (This is similar to how we protect PSTN gateways.) And we need to get the phone manufacturers to do that work. Dale _______________________________________________ sipx-dev mailing list [email protected] List Archive: http://list.sipfoundry.org/archive/sipx-dev Unsubscribe: http://list.sipfoundry.org/mailman/listinfo/sipx-dev
