ZRTP: Media Path Key Agreement for Unicast Secure RTP
RFC 6189, “ZRTP: Media Path Key Agreement for Unicast Secure RTP”, is an Informational document published in April 2011 by P. Zimmermann, A. Johnston, J. Callas. The canonical text is published by the RFC Editor.
Abstract
This document defines ZRTP, a protocol for media path Diffie-Hellman exchange to agree on a session key and parameters for establishing unicast Secure Real-time Transport Protocol (SRTP) sessions for Voice over IP (VoIP) applications. The ZRTP protocol is media path keying because it is multiplexed on the same port as RTP and does not require support in the signaling protocol. ZRTP does not assume a Public Key Infrastructure (PKI) or require the complexity of certificates in end devices. For the media session, ZRTP provides confidentiality, protection against man-in-the-middle (MiTM) attacks, and, in cases where the signaling protocol provides end-to-end integrity protection, authentication. ZRTP can utilize a Session Description Protocol (SDP) attribute to provide discovery and authentication through the signaling channel. To provide best effort SRTP, ZRTP utilizes normal RTP/AVP (Audio-Visual Profile) profiles. ZRTP secures media sessions that include a voice media stream and can also secure media sessions that do not include voice by using an optional digital signature. This document is not an Internet Standards Track specification; it is published for informational purposes.
What “Informational” means
Published for the general information of the community. It does not define an IETF standard and carries no standards-track status.
The canonical text of RFC 6189 is hosted at rfc-editor.org. Available in TXT,HTML.
- RFC 6188 The Use of AES-192 and AES-256 in Secure RTP
- RFC 6190 RTP Payload Format for Scalable Video Coding
- RFC 6187 X.509v3 Certificates for Secure Shell Authentication
- RFC 6191 Reducing the TIME-WAIT State Using TCP Timestamps
- RFC 6186 Use of SRV Records for Locating Email Submission/Access Services
- RFC 6192 Protecting the Router Control Plane
- RFC 6185 RTP Payload Format for H.264 Reduced-Complexity Decoding Operation Video
- RFC 6193 Media Description for the Internet Key Exchange Protocol in the Session Description Protocol