【24h】

A trust communication with SIP protocol

机译:使用SIP协议的信任通信

获取原文

摘要

Session Initiation Protocol (SIP) is an application-layer signaling and control protocol for creating, modifying and terminating sessions including Internet telephone calls, multimedia distribution and multimedia conferences. Flexible, extensible and open, SIP has a complete security mechanism that allows security of both media and signaling. SIP RFC recommends the use of TLS or DTLS to provide an adequate level of protection against attacks. However, missing from these protocols is a way to perform non-repudiation service when used in SIP networks to provide a high level of trust between User Agents. In this paper we propose to modify and sign some header fields in the SIP request messages in order to achieve non-repudiation service over TLS/DTLS. To facilitate the implementation, the portability and the test of our proposal, called SIP SIGN, the new messages will be created and treated by a redirect server named “Proxy Signatory” setting between the User Agents and their local proxy servers. This “Proxy Signatory” provides the caller the ability to sign its SIP messages using certificates such as X.509 and the callee to verify and validate the signature and the caller identity.
机译:会话发起协议(SIP)是一种应用程序层信令和控制协议,用于创建,修改和终止会话,包括Internet电话呼叫,多媒体分发和多媒体会议。 SIP具有灵活性,可扩展性和开放性,具有完善的安全性机制,可以实现媒体和信令的安全性。 SIP RFC建议使用TLS或DTLS,以提供足够级别的保护以免受攻击。但是,这些协议中缺少的一种方法是在SIP网络中使用时执行非抵赖服务的一种方式,以在用户代理之间提供高度的信任。在本文中,我们建议修改并签名SIP请求消息中的某些标头字段,以实现基于TLS / DTLS的不可否认服务。为了便于我们的提案(称为SIP SIGN)的实施,可移植性和测试,将在用户代理与其本地代理服务器之间通过名为“代理签名”设置的重定向服务器来创建和处理新消息。此“代理签名者”使呼叫者能够使用X.509之类的证书对SIP消息进行签名,并且被呼叫者可以验证和确认签名和呼叫者身份。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号