[RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits]...

1348
[RFCs/IDs ] [Plain ] [Diff1 ] [Diff2 ] [Nits ] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito Internet-Draft NTT Communications Intended status: Informational D. Wing Expires: January 28, 2009 Cisco Systems July 27, 2008 Media Description for IKE in the Session Description Protocol (SDP) draft-saito-mmusic-sdp-ike-03 Status of this Memo By submitting this Internet-Draft, each author represents that any applicable patent or other IPR claims of which he or she is aware have been or will be disclosed, and any of which he or she becomes aware will be disclosed, in accordance with Section 6 of BCP 79 . Internet-Drafts are working documents of the Internet Engineering Task Force (IETF), its areas, and its working groups. Note that other groups may also distribute working documents as Internet- Drafts. Internet-Drafts are draft documents valid for a maximum of six months and may be updated, replaced, or obsoleted by other documents at any time. It is inappropriate to use Internet-Drafts as reference material or to cite them other than as "work in progress."

Transcript of [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits]...

Page 1: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05

MMUSIC Working Group M. Saito Internet-Draft NTT Communications Intended status: Informational D. Wing Expires: January 28, 2009 Cisco Systems July 27, 2008 Media Description for IKE in the Session Description Protocol (SDP) draft-saito-mmusic-sdp-ike-03 Status of this Memo By submitting this Internet-Draft, each author represents that any applicable patent or other IPR claims of which he or she is aware have been or will be disclosed, and any of which he or she becomes aware will be disclosed, in accordance with Section 6 of BCP 79. Internet-Drafts are working documents of the Internet Engineering Task Force (IETF), its areas, and its working groups. Note that other groups may also distribute working documents as Internet- Drafts. Internet-Drafts are draft documents valid for a maximum of six months and may be updated, replaced, or obsoleted by other documents at any time. It is inappropriate to use Internet-Drafts as reference material or to cite them other than as "work in progress."

Page 2: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

The list of current Internet-Drafts can be accessed at http://www.ietf.org/ietf/1id-abstracts.txt. The list of Internet-Draft Shadow Directories can be accessed at http://www.ietf.org/shadow.html. This Internet-Draft will expire on January 28, 2009. Saito & Wing Expires January 28, 2009 [Page 1]

Page 4: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Internet-Draft Media Description for IKE in the SDP July 2008

Page 5: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 6: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 7: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Abstract

Page 8: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 9: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

This document extends the protocol identifier of SDP so that it could

Page 10: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

negotiate the use of IKE for media session in SDP offer/answer model.

Page 11: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

And it also specifies the method to boot up IKE and generate IPsec SA

Page 12: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

using self-signed certificate under the mechanism of comedia-tls.

Page 13: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

This document extends RFC 4572. In addition, it defines a new

Page 14: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

attribute "udp-setup", which is similar to "setup" attribute defined

Page 15: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

in RFC 4145, to enable endpoints to negotiate their roles in the IKE

Page 16: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

session. Considering the case that pre-shared keys can be used for

Page 17: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

authentication in IKE, a new attribute "psk-fingerprint" is also

Page 18: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

defined.

Page 19: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 20: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 21: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 22: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 23: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 24: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 25: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 26: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 27: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 28: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 29: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 30: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 31: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 32: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 33: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 34: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 35: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 36: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 37: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 38: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 39: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 40: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 41: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 42: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 43: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 44: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 45: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 46: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 47: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 48: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 49: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 50: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 51: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 52: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 53: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 54: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 55: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 56: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 57: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 58: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Saito & Wing Expires January 28, 2009 [Page 2]

Page 60: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Internet-Draft Media Description for IKE in the SDP July 2008

Page 61: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 62: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 63: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Conventions used in this document

Page 64: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 65: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

The key words "MUST", "MUST NOT", "REQUIRED", "SHALL", "SHALL NOT",

Page 66: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

"SHOULD", "SHOULD NOT", "RECOMMENDED", "MAY", and "OPTIONAL" in this

Page 67: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

document are to be interpreted as described in [RFC2119].

Page 68: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 69: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 70: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Table of Contents

Page 71: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 72: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

1. Introduction . . . . . . . . . . . . . . . . . . . . . . . . . 4

Page 74: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

1.2. Approach to Solution . . . . . . . . . . . . . . . . . . . 4

Page 75: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

1.3. Alternative Solution under Prior Relationship between

Page 76: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Two Nodes . . . . . . . . . . . . . . . . . . . . . . . . 6

Page 77: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

2. Protocol Overview . . . . . . . . . . . . . . . . . . . . . . 7

Page 78: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

3. Protocol Identifiers . . . . . . . . . . . . . . . . . . . . . 9

Page 79: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

4. Example of SDP Offer and Answer Exchange without IPsec

Page 80: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

NAT-Traversal . . . . . . . . . . . . . . . . . . . . . . . . 10

Page 81: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

5. Example of SDP Offer and Answer Exchange with IPsec

Page 82: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

NAT-Traversal . . . . . . . . . . . . . . . . . . . . . . . . 12

Page 83: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

5.1. Port Usage . . . . . . . . . . . . . . . . . . . . . . . . 12

Page 84: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

5.2. Offer and Answer Exchange with ICE . . . . . . . . . . . . 12

Page 85: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

5.3. Multiplex of UDP Messages . . . . . . . . . . . . . . . . 13

Page 86: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

6. Application to IKE . . . . . . . . . . . . . . . . . . . . . . 15

Page 87: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

7. Specifications Assuming Prior Relationship between Two

Page 88: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Nodes . . . . . . . . . . . . . . . . . . . . . . . . . . . . 16

Page 89: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

7.1. Certificates Signed by Trusted Third Party . . . . . . . . 16

Page 90: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

7.2. Configured Pre-Shared Key . . . . . . . . . . . . . . . . 17

Page 91: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

8. Security Considerations . . . . . . . . . . . . . . . . . . . 19

Page 92: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

9. IANA Considerations . . . . . . . . . . . . . . . . . . . . . 20

Page 93: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

10. References . . . . . . . . . . . . . . . . . . . . . . . . . . 21

Page 94: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

10.1. Normative References . . . . . . . . . . . . . . . . . . . 21

Page 95: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

10.2. Informative References . . . . . . . . . . . . . . . . . . 22

Page 97: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Authors' Addresses . . . . . . . . . . . . . . . . . . . . . . . . 24

Page 98: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Intellectual Property and Copyright Statements . . . . . . . . . . 25

Page 99: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 100: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 101: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 102: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 103: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 104: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 105: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 106: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 107: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 108: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 109: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 110: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 111: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 112: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 113: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 114: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Saito & Wing Expires January 28, 2009 [Page 3]

Page 116: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Internet-Draft Media Description for IKE in the SDP July 2008

Page 117: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 118: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 119: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

1. Introduction

Page 120: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 121: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

In this section, the background of the problem in accessing home

Page 122: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

network which this document tries to solve, and the approach to the

Page 123: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

solution are described.

Page 124: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 125: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

1.1. Problem Statement

Page 126: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 127: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

When a device outside the home network connects to another device

Page 128: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

inside the home network, it often becomes a problem to traverse a NAT

Page 129: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

(Network Address Translation) device between them. One of the

Page 130: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

effective solutions for this problem is VPN remote access to the NAT

Page 131: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

device, usually a home router. With this approach, once the external

Page 132: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

device participates in the home network securely, it will be easy to

Page 133: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

establish connections with all the devices inside the home. On the

Page 134: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

other hand, there are more difficult cases that a home router itself

Page 135: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

is located inside the NAT. In such cases, it is also necessary to

Page 136: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

consider NAT traversal of the remote access to the home router. In

Page 137: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

any cases, because a global IP address of the home router is not

Page 138: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

always fixed, it is necessary to make use of an effective name

Page 139: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

resolution mechanism.

Page 140: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 141: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

In addition, there is a problem how a remote client and a home router

Page 142: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

authenticate each other over IKE [RFC4306] which establishes IPsec

Page 143: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

[RFC4301] for remote access. It wouldn't be always possible that

Page 144: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

both parties exchange a pre-shared key securely in advance. It would

Page 145: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

be also impractical to distribute authentication certificates signed

Page 146: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

by well-known root certification authority (CA) to all the devices

Page 147: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

because of their cost and administrative overhead, and after all, it

Page 148: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

is inefficient to publish a temporary certificate to the device which

Page 149: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

does not have a fixed IP address or hostname. Therefore, if it is

Page 150: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

possible to use a self-signed certificate for authentication

Page 151: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

securely, that will be one of the effective solutions in this case.

Page 152: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 153: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

1.2. Approach to Solution

Page 154: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 155: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

In this document, we propose to use SIP [RFC3261] as a name

Page 156: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

resolution and authentication mechanism to initiate an IKE session.

Page 157: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

There are three main advantages to use SIP as follows.

Page 158: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 159: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

o Delegation of Authentication to Third Party

Page 160: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

By taking advantage of the authentication and authorization

Page 161: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

mechanisms which SIP already has, the devices can be free from

Page 162: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

managing signed certificates and their whitelists.

Page 163: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 164: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

o UDP Hole Punching for IKE/IPsec

Page 165: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

SIP has a cross-nat rendezvous mechanism such as ICE

Page 166: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

[I-D.ietf-mmusic-ice]. This effective function can be used for

Page 167: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 168: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 169: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 170: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Saito & Wing Expires January 28, 2009 [Page 4]

Page 172: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Internet-Draft Media Description for IKE in the SDP July 2008

Page 173: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 174: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 175: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

general applications as well as real-time media. It is difficult

Page 176: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

to setup the session between devices without SIP if they are

Page 177: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

inside various types of NAT.

Page 178: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 179: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

o Reuse of Existing SIP Infrastructure

Page 180: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

SIP servers are widely distributed as a scalable infrastructure,

Page 181: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

and it is quite reasonable to reuse them without any

Page 182: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

modifications.

Page 183: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 184: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Today, SIP is applied to not only VoIP but also various applications

Page 185: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

and recognized as a general protocol for session initiation.

Page 186: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Therefore, it can be used to initiate IKE/IPsec sessions, too.

Page 187: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 188: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

On the other hand, there is also a specification which uses a self-

Page 189: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

signed certificate for authentication in the SIP/SDP [RFC4566]

Page 190: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

framework. Comedia-tls [RFC4572] specifies the method to exchange a

Page 191: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

fingerprint of self-signed certificate to establish a TLS [RFC4346]

Page 192: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

connection. This specification defines a mechanism that allows self-

Page 193: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

signed certificates can be used securely, provided that the integrity

Page 194: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

of the SDP description is assured. Because a certificate itself can

Page 195: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

be used for authentication not only in TLS but also in IKE, this

Page 196: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

mechanism will be applied to the establishment of IPsec SA by

Page 197: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

extending the protocol identifier of SDP so that it could specify

Page 198: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

IKE.

Page 199: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 200: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

One of the easy methods to protect the integrity of SDP description,

Page 201: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

which is the premise of this spec, is to use SIP identity [RFC4474]

Page 202: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

mechanism. This approach is also referred in

Page 203: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

[I-D.fischl-sipping-media-dtls]. Because SIP identity mechanism can

Page 204: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

protect the integrity of a body part as well as the value of From

Page 205: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

header in a SIP request by a valid Identity header, the receiver of

Page 206: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

the request can establish the secure IPsec connections with the

Page 207: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

sender by confirming that the hash value of the certificate sent

Page 208: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

during IKE negotiation matches the fingerprint in the SDP. Although

Page 209: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

SIP identity does not protect the identity of the receiver of the SIP

Page 210: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

request, SIP connected identity [RFC4916] does it.

Page 211: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 212: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Considering above background, this document defines new media formats

Page 213: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

"ike-esp" and "ike-esp-udpencap" which can be used when the protocol

Page 214: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

identifier is "UDP" to enable the negotiation of using IKE for media

Page 215: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

session over SDP exchange on condition that the integrity of SDP

Page 216: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

description is assured. And it also specifies the method to setup

Page 217: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

IPsec SA by exchanging fingerprints of self-signed certificates based

Page 218: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

on comedia-tls, and notes the example of SDP offer/answer [RFC3264]

Page 219: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

and the points which implementation should take care. Because there

Page 220: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

is a chance that devices are inside NAT, it also covers the method to

Page 221: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

combine IKE/IPsec NAT-Traversal [RFC3947][RFC3948] with ICE. In

Page 222: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

addition, it defines an attribute "udp-setup" for UDP media sessions,

Page 223: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 224: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 225: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 226: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Saito & Wing Expires January 28, 2009 [Page 5]

Page 228: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Internet-Draft Media Description for IKE in the SDP July 2008

Page 229: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 230: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 231: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

similar to the "setup" attribute for TCP-based media transport

Page 232: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

defined in RFC 4145 [RFC4145]. It is used to negotiate the role of

Page 233: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

each endpoint in the IKE session.

Page 234: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 235: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

1.3. Alternative Solution under Prior Relationship between Two Nodes

Page 236: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 237: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Under quite limited conditions, certificates signed by trusted third

Page 238: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

parties or pre-shared keys between endpoints could be used for

Page 239: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

authentication in IKE, with using SIP servers only for name

Page 240: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

resolution and authorization of session initiation. We address such

Page 241: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

limited cases in chapter 7.

Page 242: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 243: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 244: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 245: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 246: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 247: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 248: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 249: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 250: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 251: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 252: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 253: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 254: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 255: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 256: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 257: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 258: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 259: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 260: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 261: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 262: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 263: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 264: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 265: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 266: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 267: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 268: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 269: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 270: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 271: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 272: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 273: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 274: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 275: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 276: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 277: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 278: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 279: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 280: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 281: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 282: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Saito & Wing Expires January 28, 2009 [Page 6]

Page 284: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Internet-Draft Media Description for IKE in the SDP July 2008

Page 285: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 286: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 287: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

2. Protocol Overview

Page 288: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 289: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

As shown in Figure 1, for example, there is a case of VPN remote

Page 290: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

access from a device outside the home to the home router whose IP

Page 291: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

address is not fixed. In this case, the external device, a remote

Page 292: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

client recognizes Address of Record of the home router, but does not

Page 293: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

have any information about its contact address and certificate.

Page 294: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Generally, it is difficult to establish IPsec SA dynamically and

Page 295: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

securely in this situation. However as specified in comedia-tls, if

Page 296: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

the integrity of SDP session descriptions is assured, it is possible

Page 297: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

for the home router and the remote client to have a prior

Page 298: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

relationship with each other by exchanging certificate fingerprints,

Page 299: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

secure one-way hashes of the DER (distinguished encoding rules) form

Page 300: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

of the certificates.

Page 301: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 302: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

REGISTRATION +----------+ REGISTRATION

Page 303: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

(1) | SIP | (1)

Page 304: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

+---------->| Proxy |<------+

Page 305: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

| +------->| |-----+ |

Page 306: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

| |INVITE +----------+ | |

Page 307: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

| | (2) | | +--------+

Page 308: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

| | V | | Home |

Page 309: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

+----------+ IKE(Media Session) +--------+ Net. |

Page 310: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

| |<--------(3)-------->| Home | |

Page 311: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

| Remote | | Router | |

Page 312: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

| Client ==========(4)==================== |

Page 313: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

| | IPsec SA +--------+ |

Page 314: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

+----------+ | |

Page 315: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

+--------+

Page 316: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 317: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Figure 1: Remote Access to Home Network

Page 318: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 319: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

1. Both Remote Client and Home Router generate secure signaling

Page 320: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

channels. They may REGISTER to SIP Proxy using TLS.

Page 321: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 322: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

2. Both Remote Client (SDP offerer) and Home Router (SDP answerer)

Page 323: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

exchange the fingerprints of their self-signed certificates in

Page 324: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

SDP during an INVITE transaction.

Page 325: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 326: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

3. After SDP exchange, Remote Client (SDP offerer) initiates IKE

Page 327: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

with the SDP answerer to establish IPsec SA. Both the offerer

Page 328: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

and the answerer validate that the certificate presented in the

Page 329: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

IKE exchange has a fingerprint that matches the fingerprint from

Page 330: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

SDP. If they match, IKE negotiation proceeds as normal.

Page 331: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 332: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

4. Remote Client joins in the Home Network.

Page 333: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 334: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Using this method, the self-signed certificates of both parties are

Page 335: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 336: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 337: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 338: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Saito & Wing Expires January 28, 2009 [Page 7]

Page 340: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Internet-Draft Media Description for IKE in the SDP July 2008

Page 341: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 342: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 343: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

used for authentication in IKE, but SDP itself is not concerned with

Page 344: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

all the negotiations related to key-exchange such as those of

Page 345: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

encryption and authentication algorithms. These negotiations are up

Page 346: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

to IKE. And in many cases that IPsec is used for remote access, a

Page 347: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

remote client needs to obtain a private address inside the home

Page 348: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

network dynamically while initiating the remote access, therefore

Page 349: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

IPsec security policy also needs to be set dynamically at the same

Page 350: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

time. However, such a management function of security policy is on

Page 351: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

the responsibility of the high-level application. SDP is not

Page 352: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

concerned with it. The roles of SDP here are to determine the IP

Page 353: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

addresses of both parties used for IKE connection with c-line in SDP,

Page 354: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

and exchange fingerprints of certificates used for authentication in

Page 355: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

IKE with fingerprint attribute in SDP.

Page 356: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 357: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

If the high-level application thinks a VPN session as the media

Page 358: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

session, it MAY discard the IPsec SA and terminate IKE when that

Page 359: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

media session is terminated by BYE request. Therefore the

Page 360: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

application MUST NOT send a BYE request as long as it needs the IPsec

Page 361: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

SA. By the way, each party can cache the certificate of the other

Page 362: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

party as described in Security Consideration of comedia-tls.

Page 363: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 364: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

The above example is for tunnel mode IPsec used for remote access,

Page 365: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

but the actual usage of negotiated IPsec is not limited. For

Page 366: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

example, IKE can negotiate transport mode IPsec to encrypt multiple

Page 367: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

media sessions between two parties with only a pair of IPsec security

Page 368: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

associations. Only one thing that SDP offer/answer model is

Page 369: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

responsible for is to exchange the fingerprints of certificates used

Page 370: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

for IKE, therefore, it does not take care of security policy.

Page 371: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 372: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 373: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 374: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 375: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 376: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 377: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 378: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 379: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 380: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 381: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 382: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 383: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 384: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 385: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 386: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 387: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 388: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 389: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 390: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 391: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 392: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 393: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 394: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Saito & Wing Expires January 28, 2009 [Page 8]

Page 396: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Internet-Draft Media Description for IKE in the SDP July 2008

Page 397: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 398: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 399: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

3. Protocol Identifiers

Page 400: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 401: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

This document defines new media format descriptions "ike-esp" and

Page 402: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

"ike-esp-udpencap", which can be used when the protocol identifier is

Page 403: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

"UDP" and indicate that the described media are IKE and IPsec coming

Page 404: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

after it. Both offerer and answerer can negotiate IKE by specifying

Page 405: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

"UDP" in the "proto" field and "ike-esp" or "ike-esp-udpencap" in the

Page 406: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

"fmt" field in SDP. "ike-esp" denotes the normal IKE process and

Page 407: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

IPsec ESP [RFC4303], while "ike-esp-udpencap" does the process of

Page 408: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

IPsec NAT-Traversal that is specified in RFC3947 and RFC3948.

Page 409: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 410: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

In addition, this document defines a new attribute "udp-setup", which

Page 411: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

can be used when the protocol identifier is "UDP" and the "fmt" field

Page 412: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

is "ike-esp" or "ike-esp-udpencap", in order to describe how

Page 413: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

endpoints should perform the IKE session setup procedure. The "udp-

Page 414: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

setup" attribute indicates which of the end points should initiate

Page 415: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

the IKE session establishment. The "udp-setup" attribute is charset-

Page 416: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

independent and can be a session-level or a media-level attribute.

Page 417: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

The following is the ABNF of the "udp-setup" attribute.

Page 418: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 419: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

udp-setup-attr = "a=udp-setup:" role

Page 420: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

role = "active" / "passive" / "actpass"

Page 421: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 422: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

'active' : The endpoint will initiate an outgoing session.

Page 423: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

'passive' : The endpoint will accept an incoming session.

Page 424: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

'actpass' : The endpoint is willing to accept an incoming

Page 425: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

session or to initiate an outgoing session.

Page 426: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 427: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

As defined in 4.1 of RFC 4145, both endpoints negotiate the value of

Page 428: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

"udp-setup" using the offer/answer model. However, "holdconn"

Page 429: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

defined in RFC 4145 is not defined here because UDP doesn't establish

Page 430: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

a connection.

Page 431: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 432: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Offer Answer

Page 433: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

----------------------------

Page 434: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

active passive

Page 435: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

passive active

Page 436: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

actpass active / passive

Page 437: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 438: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

The semantics of "active", "passive", and "actpass" in the offer/

Page 439: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

answer exchange is the same as the definition described in 4.1 of RFC

Page 440: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

4145. The default value of the udp-setup attribute is "active" in

Page 441: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

the offer and "passive" in the answer.

Page 442: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 443: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 444: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 445: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 446: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 447: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 448: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 449: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 450: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Saito & Wing Expires January 28, 2009 [Page 9]

Page 452: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Internet-Draft Media Description for IKE in the SDP July 2008

Page 453: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 454: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 455: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

4. Example of SDP Offer and Answer Exchange without IPsec NAT-Traversal

Page 456: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 457: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

If IPsec NAT-Traversal is not necessary, SDP negotiation to setup IKE

Page 458: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

is quite simple. The example of SDP exchange is as follows.

Page 459: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 460: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

(Note: due to RFC formatting conventions, this document splits SDP

Page 461: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

across lines whose content would exceed 72 characters. A backslash

Page 462: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

character marks where this line folding has taken place. This

Page 463: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

backslash and its trailing CRLF and whitespace would not appear in

Page 464: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

actual SDP content.)

Page 465: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 466: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

offer SDP

Page 467: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

...

Page 468: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

m=application 500 UDP ike-esp

Page 469: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

c=IN IP4 192.0.2.10

Page 470: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

a=udp-setup:active

Page 471: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

a=fingerprint:SHA-1 \

Page 472: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

4A:AD:B9:B1:3F:82:18:3B:54:02:12:DF:3E:5D:49:6B:19:E5:7C:AB

Page 473: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

...

Page 474: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 475: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

answer SDP

Page 476: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

...

Page 477: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

m=application 500 UDP ike-esp

Page 478: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

c=IN IP4 192.0.2.20

Page 479: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

a=udp-setup:passive

Page 480: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

a=fingerprint:SHA-1 \

Page 481: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

D2:9F:6F:1E:CD:D3:09:E8:70:65:1A:51:7C:9D:30:4F:21:E4:4A:8E

Page 482: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

...

Page 483: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 484: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Following comedia-tls specification, the fingerprint attribute may be

Page 485: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

either a session-level or a media-level SDP attribute. If it is a

Page 486: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

session-level attribute, it applies to all IKE sessions and TLS

Page 487: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

sessions for which no media-level fingerprint attribute is defined.

Page 488: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 489: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

By the way, it is possible that an offerer becomes IKE responder and

Page 490: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

an answerer becomes IKE initiator. For example, when RAS server

Page 491: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

sends INVITE to RAS client, the server may expect the client to

Page 492: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

become an IKE initiator. In this case, the server sends offer SDP

Page 493: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

with udp-setup:passive and the client sends back answer SDP with udp-

Page 494: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

setup:active as follows.

Page 495: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 496: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

offer SDP

Page 497: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

...

Page 498: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

m=application 500 UDP ike-esp

Page 499: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

c=IN IP4 192.0.2.10

Page 500: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

a=udp-setup:passive

Page 501: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

a=fingerprint:SHA-1 \

Page 502: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

4A:AD:B9:B1:3F:82:18:3B:54:02:12:DF:3E:5D:49:6B:19:E5:7C:AB

Page 503: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 504: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 505: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 506: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Saito & Wing Expires January 28, 2009 [Page 10]

Page 508: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Internet-Draft Media Description for IKE in the SDP July 2008

Page 509: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 510: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 511: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

...

Page 512: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 513: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

answer SDP

Page 514: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

...

Page 515: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

m=application 500 UDP ike-esp

Page 516: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

c=IN IP4 192.0.2.20

Page 517: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

a=udp-setup:active

Page 518: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

a=fingerprint:SHA-1 \

Page 519: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

D2:9F:6F:1E:CD:D3:09:E8:70:65:1A:51:7C:9D:30:4F:21:E4:4A:8E

Page 520: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

...

Page 521: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 522: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 523: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 524: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 525: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 526: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 527: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 528: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 529: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 530: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 531: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 532: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 533: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 534: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 535: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 536: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 537: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 538: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 539: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 540: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 541: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 542: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 543: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 544: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 545: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 546: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 547: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 548: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 549: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 550: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 551: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 552: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 553: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 554: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 555: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 556: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 557: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 558: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 559: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 560: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 561: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 562: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Saito & Wing Expires January 28, 2009 [Page 11]

Page 564: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Internet-Draft Media Description for IKE in the SDP July 2008

Page 565: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 566: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 567: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

5. Example of SDP Offer and Answer Exchange with IPsec NAT-Traversal

Page 568: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 569: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

If either of endpoints that negotiate IKE is inside the NAT, they

Page 570: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

need to transmit both IKE and IPsec packets over NAT. That mechanism

Page 571: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

is specified in RFC3947 and RFC3948 that both endpoints encapsulate

Page 572: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

IPsec-ESP packets with UDP header and multiplex them into the UDP

Page 573: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

session which IKE generates. On the other hand, they also need to

Page 574: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

decide their transport addresses (combination of IP address and port)

Page 575: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

before starting IKE making use of ICE framework. In this chapter, a

Page 576: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

method to coordinate IPsec NAT-Traversal and ICE is described.

Page 577: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 578: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

5.1. Port Usage

Page 579: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 580: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

IKE uses local UDP port 500 in general, but IPsec NAT-Traversal spec

Page 581: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

requires the port transition to UDP port 4500 during IKE negotiation

Page 582: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

because there is a possible problem that IPsec-aware NAT would

Page 583: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

derive. This transition imposes ICE to generate an additional UDP

Page 584: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

session soon after the first IKE starts, and it would be an

Page 585: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

inefficient overhead. However, IPsec NAT-Traversal allows IKE

Page 586: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

session to use local UDP port 4500 from the beginning. Therefore the

Page 587: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

endpoints SHOULD use their local UDP port 4500 for IKE session from

Page 588: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

the beginning because when they are ready to use ICE, they should

Page 589: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

also be ready to use IPsec NAT-Traversal.

Page 590: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 591: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

When using ICE, a responder's IKE port observed by an initiator is

Page 592: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

not necessarily 500 or 4500. Therefore, IKE initiator MUST allow any

Page 593: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

destination ports in addition to 500 and 4500 for the IKE packets

Page 594: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

which itself sends.

Page 595: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 596: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

5.2. Offer and Answer Exchange with ICE

Page 597: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 598: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

We consider the following scenario here.

Page 599: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 600: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

+---------------------+

Page 601: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

| |

Page 602: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

| Internet |

Page 603: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

| |

Page 604: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

+---------------------+

Page 605: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

| |

Page 606: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

| |(192.0.2.20:45664)

Page 607: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

| +---------+

Page 608: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

| | NAT |

Page 609: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

| +---------+

Page 610: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

| |

Page 611: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

(192.0.2.10:4500)| |(10.0.1.1:4500)

Page 612: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

+---------+ +----------+

Page 613: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

| offerer | | answerer |

Page 614: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

+---------+ +----------+

Page 615: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 616: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 617: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 618: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Saito & Wing Expires January 28, 2009 [Page 12]

Page 620: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Internet-Draft Media Description for IKE in the SDP July 2008

Page 621: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 622: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 623: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Figure 2: NAT-Traversal Scenario

Page 624: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 625: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

As shown above, an offerer is on the Internet but an answerer is

Page 626: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

inside the NAT. The offerer cannot initiate IKE session unless the

Page 627: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

answerer prepares a global routable transport address which accepts

Page 628: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

IKE packets. In this case, the following offer/answer exchange will

Page 629: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

take place.

Page 630: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 631: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

offer SDP

Page 632: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

...

Page 633: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

a=ice-pwd:YH75Fviy6338Vbrhrlp8Yh

Page 634: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

a=ice-ufrag:9uB6

Page 635: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

m=application 4500 UDP ike-esp-udpencap

Page 636: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

c=IN IP4 192.0.2.10

Page 637: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

a=udp-setup:active

Page 638: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

a=fingerprint:SHA-1 \

Page 639: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

4A:AD:B9:B1:3F:82:18:3B:54:02:12:DF:3E:5D:49:6B:19:E5:7C:AB

Page 640: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

a=candidate:1 1 UDP 2130706431 192.0.2.10 4500 typ host

Page 641: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

...

Page 642: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 643: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

answer SDP

Page 644: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

...

Page 645: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

a=ice-pwd:asd88fgpdd777uzjYhagZg

Page 646: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

a=ice-ufrag:8hhY

Page 647: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

m=application 45664 UDP ike-esp-udpencap

Page 648: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

c=IN IP4 192.0.2.20

Page 649: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

a=udp-setup:passive

Page 650: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

a=fingerprint:SHA-1 \

Page 651: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

D2:9F:6F:1E:CD:D3:09:E8:70:65:1A:51:7C:9D:30:4F:21:E4:4A:8E

Page 652: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

a=candidate:1 1 UDP 2130706431 10.0.1.1 4500 typ host

Page 653: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

a=candidate:2 1 UDP 1694498815 192.0.2.20 45664 typ srflx \

Page 654: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

raddr 10.0.1.1 rport 4500

Page 655: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

...

Page 656: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 658: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

connectivity check after SDP exchange. Then the offerer initiates

Page 659: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

the IKE session making use of UDP session generated by STUN packets.

Page 660: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

In addition, UDP encapsulated ESP packets are multiplexed into the

Page 661: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

same UDP session as IKE. Thus it is necessary to multiplex the

Page 662: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

different three packets, STUN, IKE, and UDP-encapsulated ESP into the

Page 663: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

same UDP session.

Page 664: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 665: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

5.3. Multiplex of UDP Messages

Page 666: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 667: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

As described above, STUN, IKE, and UDP-encapsulated ESP packets are

Page 668: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

multiplexed into the same UDP session. This section describes how to

Page 669: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

demultiplex these three packets.

Page 670: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 671: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 672: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 673: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 674: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Saito & Wing Expires January 28, 2009 [Page 13]

Page 676: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Internet-Draft Media Description for IKE in the SDP July 2008

Page 677: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 678: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 679: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

At the first step, the endpoint which received a UDP packet at the

Page 680: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

multiplexed port MUST check the first 32 bits of UDP payload. If

Page 681: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

they are all 0, which is defined as non-ESP marker, that packet MUST

Page 682: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

be treated as an IKE packet.

Page 683: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 684: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Otherwise it is judged as an ESP packet in IPsec NAT-Traversal spec,

Page 685: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

however it is furthermore necessary to distinguish STUN from ESP.

Page 686: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Therefore the bits 32-64 from the beginning of the UDP payload MUST

Page 687: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

be checked. If it doesn't match the magic cookie of STUN 0x2112A442

Page 688: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

(most packets don't match), it is treated as an ESP packet because it

Page 689: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

is no longer a STUN packet.

Page 690: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 691: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

However if it matches the magic cookie, an additional test is

Page 692: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

necessary to determine it is STUN or ESP. The magic cookie field of

Page 693: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

STUN overlaps the sequence number filed of ESP, so there still

Page 694: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

remains a possibility that the sequence number of ESP coincides with

Page 695: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

0x2112A442. In this additional test, the validity of the fingerprint

Page 696: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

attribute of STUN message MUST be checked. If there is a valid

Page 697: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

fingerprint in the message, it is judged as a STUN packet, otherwise

Page 698: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

it is an ESP packet.

Page 699: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 700: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

The above logic is expressed as follows.

Page 701: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 702: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

if SPI-field-is-all-zeros

Page 703: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

{ packet is IKE }

Page 704: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

else

Page 705: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

{

Page 706: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

if bits-32-through-64 == stun-magic-cookie-value and

Page 707: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

bits-0-through-1 == 0 and

Page 708: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

bits-2-through-15 == a STUN message type and

Page 709: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

bits-16-through-32 == length of this UDP packet

Page 710: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

{

Page 711: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

fingerprint_found == parse_for_stun_fingerprint();

Page 712: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

if fingerprint_found == 1

Page 713: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

{ packet is STUN }

Page 714: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

else

Page 715: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

{ packet is ESP }

Page 716: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

}

Page 717: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

else

Page 718: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

{ packet is ESP }

Page 719: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

}

Page 720: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 721: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 722: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 723: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 724: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 725: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 726: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 727: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 728: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 729: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 730: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Saito & Wing Expires January 28, 2009 [Page 14]

Page 732: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Internet-Draft Media Description for IKE in the SDP July 2008

Page 733: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 734: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 735: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

6. Application to IKE

Page 736: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 737: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

After sharing fingerprints of both parties securely over the SDP

Page 738: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

exchange, the IKE initiator MAY start the IKE session to the other

Page 739: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

party. To follow this specification, digital signature MUST be

Page 740: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

chosen as an authentication method in IKE phase 1. In this process,

Page 741: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

certificate whose hashed value matches the fingerprint exchanged over

Page 742: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

SDP MUST be used. If the certificate used in IKE does not match the

Page 743: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

original fingerprint, the endpoint MUST terminate the IKE session

Page 744: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

with detecting an authentication failure.

Page 745: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 746: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

In addition, each party MUST present a certificate and be

Page 747: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

authenticated by each other.

Page 748: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 749: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 750: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 751: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 752: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 753: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 754: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 755: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 756: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 757: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 758: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 759: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 760: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 761: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 762: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 763: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 764: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 765: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 766: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 767: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 768: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 769: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 770: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 771: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 772: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 773: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 774: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 775: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 776: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 777: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 778: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 779: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 780: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 781: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 782: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 783: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 784: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 785: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 786: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Saito & Wing Expires January 28, 2009 [Page 15]

Page 788: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Internet-Draft Media Description for IKE in the SDP July 2008

Page 789: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 790: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 791: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

7. Specifications Assuming Prior Relationship between Two Nodes

Page 792: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 793: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

This section describes the specification for the limited cases such

Page 794: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

that certificates signed by trusted third parties or pre-shared keys

Page 795: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

between endpoints can be used for authentication in IKE. Because

Page 796: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

endpoints already have a prior relationship between them in this

Page 797: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

case, they use SIP servers just for name resolution and

Page 798: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

authorization. However, even in this case, the integrity of SDP

Page 799: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

description MUST be assured.

Page 800: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 801: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

7.1. Certificates Signed by Trusted Third Party

Page 802: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 803: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

The protocol overview in this case is the same as in chapter 2. SDP

Page 804: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

offer/answer procedure is also the same as in chapter 4 and 5. Both

Page 805: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

endpoints have a prior relationship through the trusted third

Page 806: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

parties, and SIP servers are used for name resolution and

Page 807: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

authorization of session initiation. Even so, they MAY exchange

Page 808: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

fingerprints in the SDP because one device can have several

Page 809: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

certificates and it would be necessary to specify in advance which

Page 810: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

certificate will be used for the following IKE authentication. By

Page 811: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

this process, authorization in SIP and authentication in IKE become

Page 812: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

consistent with each other. The following figure shows VPN remote

Page 813: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

access from a device outside the home to the home router whose IP

Page 814: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

address is not fixed (same as chapter 2).

Page 815: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 816: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

REGISTRATION +----------+ REGISTRATION

Page 817: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

(1) | SIP | (1)

Page 818: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

+---------->| Proxy |<------+

Page 819: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

| +------->| |-----+ |

Page 820: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

| |INVITE +----------+ | |

Page 821: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

| | (2) | | +--------+

Page 822: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

| | V | | Home |

Page 823: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

+----------+ IKE(Media Session) +--------+ Net. |

Page 824: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

| |<--------(3)-------->| Home | |

Page 825: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

| Remote | | Router | |

Page 826: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

| Client ==========(4)==================== |

Page 827: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

| | IPsec SA +--------+ |

Page 828: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

+----------+ | |

Page 829: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

+--------+

Page 830: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 831: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Figure 3: Remote Access to Home Network

Page 832: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 833: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

1. Both Remote Client and Home Router generate secure signaling

Page 834: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

channels. They may REGISTER to SIP Proxy using TLS.

Page 835: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 836: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

2. Both Remote Client (SDP offerer) and Home Router (SDP answerer)

Page 837: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

exchange the fingerprints of their certificates signed by trusted

Page 838: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

third parties in SDP during an INVITE transaction.

Page 839: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 840: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 841: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 842: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Saito & Wing Expires January 28, 2009 [Page 16]

Page 844: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Internet-Draft Media Description for IKE in the SDP July 2008

Page 845: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 846: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 847: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

3. After SDP exchange, Remote Client (SDP offerer) initiates IKE

Page 848: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

with the SDP answerer to establish IPsec SA. Both the offerer

Page 849: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

and the answerer validate that the signed certificate presented

Page 850: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

in the IKE exchange has a fingerprint that matches the

Page 851: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

fingerprint from SDP. If they match, IKE negotiation proceeds as

Page 852: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

normal.

Page 853: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 854: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

4. Remote Client joins in the Home Network.

Page 855: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 856: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

7.2. Configured Pre-Shared Key

Page 857: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 858: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

If a pre-shared key for IKE authentication is installed in both

Page 859: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

endpoints in advance, they need not exchange fingerprints of their

Page 860: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

certificates. However they may still need to specify which pre-

Page 861: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

shared key they will use in the following IKE authentication in SDP

Page 862: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

because they may have several pre-shared keys. Therefore, a new

Page 863: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

attribute "psk-fingerprint" is defined to exchange a fingerprint of

Page 864: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

pre-shared key over SDP. It also has a role of making authorization

Page 865: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

in SIP consistent with authentication in IKE. "psk-fingerprint" is

Page 866: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

applied to pre-shared keys as "fingerprint" defined in RFC4572 is

Page 867: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

applied to certificates. The following is the ABNF of the "psk-

Page 868: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

fingerprint" attribute. The use of "psk-fingerprint" is OPTIONAL.

Page 869: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 870: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

attribute =/ psk-fingerprint-attribute

Page 871: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 872: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

psk-fingerprint-attribute = "psk-fingerprint" ":" hash-func SP

Page 873: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

psk-fingerprint

Page 874: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 875: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

hash-func = "sha-1" / "sha-224" / "sha-256" /

Page 876: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

"sha-384" / "sha-512" /

Page 877: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

"md5" / "md2" / token

Page 878: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

; Additional hash functions can only come

Page 879: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

; from updates to RFC 3279

Page 880: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 881: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

psk-fingerprint = 2UHEX *(":" 2UHEX)

Page 882: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

; Each byte in upper-case hex, separated

Page 883: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

; by colons.

Page 884: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 885: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

UHEX = DIGIT / %x41-46 ; A-F uppercase

Page 886: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 887: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

An example of SDP negotiation for IKE with pre-shared key

Page 888: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

authentication without IPsec NAT-Traversal is as follows.

Page 889: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 890: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

offer SDP

Page 891: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

...

Page 892: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

m=application 500 UDP ike-esp

Page 893: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

c=IN IP4 192.0.2.10

Page 894: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

a=udp-setup:active

Page 895: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 896: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 897: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 898: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Saito & Wing Expires January 28, 2009 [Page 17]

Page 900: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Internet-Draft Media Description for IKE in the SDP July 2008

Page 901: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 902: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 903: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

a=psk-fingerprint:SHA-1 \

Page 904: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

12:DF:3E:5D:49:6B:19:E5:7C:AB:4A:AD:B9:B1:3F:82:18:3B:54:02

Page 905: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

...

Page 906: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 907: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

answer SDP

Page 908: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

...

Page 909: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

m=application 500 UDP ike-esp

Page 910: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

c=IN IP4 192.0.2.20

Page 911: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

a=udp-setup:passive

Page 912: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

a=psk-fingerprint:SHA-1 \

Page 913: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

1A:51:7C:9D:30:4F:21:E4:4A:8E:D2:9F:6F:1E:CD:D3:09:E8:70:65

Page 914: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

...

Page 915: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 916: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 917: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 918: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 919: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 920: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 921: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 922: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 923: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 924: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 925: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 926: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 927: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 928: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 929: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 930: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 931: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 932: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 933: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 934: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 935: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 936: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 937: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 938: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 939: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 940: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 941: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 942: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 943: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 944: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 945: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 946: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 947: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 948: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 949: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 950: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 951: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 952: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 953: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 954: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Saito & Wing Expires January 28, 2009 [Page 18]

Page 956: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Internet-Draft Media Description for IKE in the SDP July 2008

Page 957: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 958: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 959: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

8. Security Considerations

Page 960: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 961: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

This entire document concerns itself with security, but the security

Page 962: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

considerations applicable to SDP in general is described in SDP

Page 963: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

specification. And the security issues which should be considered in

Page 964: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

using comedia-tls are described in Section 7 in its specification.

Page 965: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

This section describes the security considerations specific in the

Page 966: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

negotiation of IKE using comedia-tls.

Page 967: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 968: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Offering IKE in SDP (or agreeing to one in SDP offer/answer mode)

Page 969: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

does not create an obligation for an endpoint to accept any IKE

Page 970: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

session with the given fingerprint. On the other hand, the endpoint

Page 971: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

must engage in the standard IKE negotiation procedure to ensure that

Page 972: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

the IPsec security associations (including encryption and

Page 973: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

authentication algorithms) chosen meet the security requirements of

Page 974: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

the higher-level application. When IKE has finished negotiating, the

Page 975: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

decision to conclude IKE and establish an IPsec security association

Page 976: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

with the remote peer is entirely the decision of each endpoint. This

Page 977: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

procedure is similar to how VPNs are typically established in the

Page 978: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

absence of SIP.

Page 979: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 980: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

In the general authentication process in IKE, subject DN or

Page 981: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

subjectAltName is recognized as the identity of the remote party.

Page 982: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

However by using SIP identity and SIP connected identity mechanisms

Page 983: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

in this spec, certificates are used just as a carrier for the public

Page 984: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

keys of the peers and there is no need for the information about who

Page 985: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

is the signer of the certificate and whom subject DN indicates.

Page 986: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 987: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

In this document, the purpose of using IKE is launching the IPsec SA,

Page 988: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

and it is not for the security mechanism of RTP and RTCP packets.

Page 989: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Actually, this mechanism cannot provide end-to-end security inside

Page 990: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

the virtual private network as long as using tunnel mode IPsec,

Page 991: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

therefore other security methods such as SRTP must be used to secure

Page 992: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

them.

Page 993: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 994: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 995: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 996: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 997: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 998: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 999: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1000: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1001: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1002: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1003: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1004: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1005: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1006: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1007: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1008: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1009: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1010: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Saito & Wing Expires January 28, 2009 [Page 19]

Page 1012: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Internet-Draft Media Description for IKE in the SDP July 2008

Page 1013: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1014: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1015: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

9. IANA Considerations

Page 1016: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1017: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

This document defines a session and media level SDP attribute, "udp-

Page 1018: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

setup". This attribute should be registered by the IANA under

Page 1019: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

"Session Description Protocol (SDP) Parameters" under "att-field

Page 1020: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

(both session and media level)".

Page 1021: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1022: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

This document defines media formats "ike-esp" and "ike-esp-udpencap".

Page 1023: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

These media format values should be registered by the IANA. Media

Page 1024: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

formats "ike-esp" and "ike-esp-udpencap" are associated with a proto

Page 1025: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

value "UDP".

Page 1026: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1027: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

This document defines a session and media level SDP attribute, "psk-

Page 1028: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

fingerprint". This attribute should be registered by the IANA under

Page 1029: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

"Session Description Protocol (SDP) Parameters" under "att-field

Page 1030: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

(both session and media level)".

Page 1031: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1032: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1033: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1034: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1035: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1036: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1037: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1038: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1039: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1040: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1041: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1042: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1043: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1044: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1045: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1046: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1047: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1048: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1049: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1050: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1051: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1052: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1053: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1054: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1055: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1056: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1057: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1058: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1059: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1060: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1061: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1062: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1063: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1064: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1065: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1066: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Saito & Wing Expires January 28, 2009 [Page 20]

Page 1068: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Internet-Draft Media Description for IKE in the SDP July 2008

Page 1069: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1070: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1071: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

10. References

Page 1072: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1073: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

10.1. Normative References

Page 1074: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1075: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

[I-D.ietf-behave-rfc3489bis]

Page 1076: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Rosenberg, J., Mahy, R., Matthews, P., and D. Wing,

Page 1077: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

"Session Traversal Utilities for (NAT) (STUN)",

Page 1078: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

draft-ietf-behave-rfc3489bis-17 (work in progress),

Page 1079: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

July 2008.

Page 1080: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1081: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

[I-D.ietf-mmusic-ice]

Page 1082: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Rosenberg, J., "Interactive Connectivity Establishment

Page 1083: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

(ICE): A Protocol for Network Address Translator (NAT)

Page 1084: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Traversal for Offer/Answer Protocols",

Page 1085: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

draft-ietf-mmusic-ice-19 (work in progress), October 2007.

Page 1086: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1087: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

[RFC2119] Bradner, S., "Key words for use in RFCs to Indicate

Page 1088: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Requirement Levels", BCP 14, RFC 2119, March 1997.

Page 1089: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1090: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

[RFC3261] Rosenberg, J., Schulzrinne, H., Camarillo, G., Johnston,

Page 1091: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

A., Peterson, J., Sparks, R., Handley, M., and E.

Page 1092: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Schooler, "SIP: Session Initiation Protocol", RFC 3261,

Page 1093: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

June 2002.

Page 1094: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1095: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

[RFC3264] Rosenberg, J. and H. Schulzrinne, "An Offer/Answer Model

Page 1096: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

with Session Description Protocol (SDP)", RFC 3264,

Page 1097: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

June 2002.

Page 1098: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1099: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

[RFC3947] Kivinen, T., Swander, B., Huttunen, A., and V. Volpe,

Page 1100: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

"Negotiation of NAT-Traversal in the IKE", RFC 3947,

Page 1101: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

January 2005.

Page 1102: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1103: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

[RFC3948] Huttunen, A., Swander, B., Volpe, V., DiBurro, L., and M.

Page 1104: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Stenberg, "UDP Encapsulation of IPsec ESP Packets",

Page 1105: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

RFC 3948, January 2005.

Page 1106: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1107: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

[RFC4301] Kent, S. and K. Seo, "Security Architecture for the

Page 1108: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Internet Protocol", RFC 4301, December 2005.

Page 1109: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1110: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

[RFC4303] Kent, S., "IP Encapsulating Security Payload (ESP)",

Page 1111: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

RFC 4303, December 2005.

Page 1112: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1113: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

[RFC4306] Kaufman, C., "Internet Key Exchange (IKEv2) Protocol",

Page 1114: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

RFC 4306, December 2005.

Page 1115: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1116: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

[RFC4566] Handley, M., Jacobson, V., and C. Perkins, "SDP: Session

Page 1117: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Description Protocol", RFC 4566, July 2006.

Page 1118: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1119: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1120: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1121: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1122: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Saito & Wing Expires January 28, 2009 [Page 21]

Page 1124: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Internet-Draft Media Description for IKE in the SDP July 2008

Page 1125: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1126: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1127: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

[RFC4572] Lennox, J., "Connection-Oriented Media Transport over the

Page 1128: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Transport Layer Security (TLS) Protocol in the Session

Page 1129: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Description Protocol (SDP)", RFC 4572, July 2006.

Page 1130: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1131: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

10.2. Informative References

Page 1132: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1133: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

[I-D.fischl-sipping-media-dtls]

Page 1134: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Fischl, J., "Datagram Transport Layer Security (DTLS)

Page 1135: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Protocol for Protection of Media Traffic Established with

Page 1136: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

the Session Initiation Protocol",

Page 1137: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

draft-fischl-sipping-media-dtls-03 (work in progress),

Page 1138: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

July 2007.

Page 1139: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1140: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

[RFC4145] Yon, D. and G. Camarillo, "TCP-Based Media Transport in

Page 1141: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

the Session Description Protocol (SDP)", RFC 4145,

Page 1142: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

September 2005.

Page 1143: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1144: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

[RFC4346] Dierks, T. and E. Rescorla, "The Transport Layer Security

Page 1145: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

(TLS) Protocol Version 1.1", RFC 4346, April 2006.

Page 1146: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1147: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

[RFC4474] Peterson, J. and C. Jennings, "Enhancements for

Page 1148: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Authenticated Identity Management in the Session

Page 1149: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Initiation Protocol (SIP)", RFC 4474, August 2006.

Page 1150: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1151: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

[RFC4916] Elwell, J., "Connected Identity in the Session Initiation

Page 1152: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Protocol (SIP)", RFC 4916, June 2007.

Page 1153: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1154: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1155: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1156: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1157: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1158: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1159: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1160: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1161: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1162: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1163: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1164: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1165: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1166: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1167: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1168: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1169: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1170: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1171: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1172: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1173: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1174: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1175: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1176: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1177: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1178: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Saito & Wing Expires January 28, 2009 [Page 22]

Page 1180: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Internet-Draft Media Description for IKE in the SDP July 2008

Page 1181: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1182: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1183: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Appendix A. Changes since draft-saito-mmusic-sdp-ike-02

Page 1184: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1185: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Instruction to RFC Editor: please remove this section prior to

Page 1186: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

publication as an RFC

Page 1187: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1188: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

o Added the case that certificates signed by trusted third parties

Page 1189: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

or pre-shared keys can be used for authentication in IKE. And

Page 1190: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

defined a new attribute "psk-fingerprint" in chapter 7.

Page 1191: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1192: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

o Added an example that an SDP offerer becomes an IKE responder to

Page 1193: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

chapter 4.

Page 1194: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1195: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

o Added a description to 5.1 that when using ICE, IKE initiator MUST

Page 1196: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

allow any destination ports in addition to 500 and 4500 for the

Page 1197: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

IKE packets which itself sends.

Page 1198: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1199: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

o Modified media format descriptions from "IKE/ESP" and "UDP/IKE/

Page 1200: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

ESP" to "ike-esp" and "ike-esp-udpencap".

Page 1201: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1202: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

o Minor grammatical edits.

Page 1203: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1204: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1205: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1206: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1207: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1208: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1209: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1210: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1211: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1212: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1213: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1214: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1215: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1216: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1217: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1218: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1219: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1220: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1221: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1222: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1223: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1224: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1225: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1226: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1227: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1228: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1229: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1230: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1231: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1232: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1233: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1234: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Saito & Wing Expires January 28, 2009 [Page 23]

Page 1236: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Internet-Draft Media Description for IKE in the SDP July 2008

Page 1237: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1238: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1239: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Authors' Addresses

Page 1240: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1241: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Makoto Saito

Page 1242: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

NTT Communications

Page 1243: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

3-20-2 Nishi-Shinjuku, Shinjuku-ku

Page 1244: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Tokyo 163-1421

Page 1245: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Japan

Page 1246: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1247: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Email: [email protected]

Page 1248: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1249: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1250: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Dan Wing

Page 1251: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Cisco Systems

Page 1252: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

170 West Tasman Drive

Page 1253: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

San Jose, CA 95134

Page 1254: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

United States

Page 1255: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1256: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Email: [email protected]

Page 1257: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1258: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1259: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1260: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1261: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1262: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1263: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1264: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1265: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1266: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1267: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1268: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1269: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1270: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1271: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1272: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1273: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1274: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1275: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1276: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1277: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1278: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1279: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1280: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1281: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1282: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1283: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1284: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1285: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1286: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1287: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1288: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1289: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1290: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Saito & Wing Expires January 28, 2009 [Page 24]

Page 1292: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Internet-Draft Media Description for IKE in the SDP July 2008

Page 1293: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1294: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1295: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Full Copyright Statement

Page 1296: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1297: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Copyright (C) The IETF Trust (2008).

Page 1298: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1299: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

This document is subject to the rights, licenses and restrictions

Page 1300: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

contained in BCP 78, and except as set forth therein, the authors

Page 1301: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

retain all their rights.

Page 1302: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1303: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

This document and the information contained herein are provided on an

Page 1304: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

"AS IS" basis and THE CONTRIBUTOR, THE ORGANIZATION HE/SHE REPRESENTS

Page 1305: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

OR IS SPONSORED BY (IF ANY), THE INTERNET SOCIETY, THE IETF TRUST AND

Page 1306: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

THE INTERNET ENGINEERING TASK FORCE DISCLAIM ALL WARRANTIES, EXPRESS

Page 1307: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

OR IMPLIED, INCLUDING BUT NOT LIMITED TO ANY WARRANTY THAT THE USE OF

Page 1308: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

THE INFORMATION HEREIN WILL NOT INFRINGE ANY RIGHTS OR ANY IMPLIED

Page 1309: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

WARRANTIES OF MERCHANTABILITY OR FITNESS FOR A PARTICULAR PURPOSE.

Page 1310: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1311: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1312: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Intellectual Property

Page 1313: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1314: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

The IETF takes no position regarding the validity or scope of any

Page 1315: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Intellectual Property Rights or other rights that might be claimed to

Page 1316: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

pertain to the implementation or use of the technology described in

Page 1317: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

this document or the extent to which any license under such rights

Page 1318: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

might or might not be available; nor does it represent that it has

Page 1319: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

made any independent effort to identify any such rights. Information

Page 1320: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

on the procedures with respect to rights in RFC documents can be

Page 1322: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1323: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Copies of IPR disclosures made to the IETF Secretariat and any

Page 1324: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

assurances of licenses to be made available, or the result of an

Page 1325: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

attempt made to obtain a general license or permission for the use of

Page 1326: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

such proprietary rights by implementers or users of this

Page 1327: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

specification can be obtained from the IETF on-line IPR repository at

Page 1328: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

http://www.ietf.org/ipr.

Page 1329: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1330: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

The IETF invites any interested party to bring to its attention any

Page 1331: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

copyrights, patents or patent applications, or other proprietary

Page 1332: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

rights that may cover technology that may be required to implement

Page 1333: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

this standard. Please address the information to the IETF at

Page 1335: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1336: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1337: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1338: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1339: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1340: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1341: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1342: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1343: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1344: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1345: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1346: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Saito & Wing Expires January 28, 2009 [Page 25]

Page 1347: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito
Page 1348: [RFCs/IDs] [Plain] [Diff1] [Diff2] - ETSI - media...[RFCs/IDs] [Plain] [Diff1] [Diff2] [Nits] Versions: 00 01 02 03 04 05 MMUSIC Working Group M. Saito

Html markup produced by rfcmarkup 1.76, available from http://tools.ietf.org/tools/rfcmarkup/