Session PEERing for Multimedia INTerconnect Security Threats and Suggested Countermeasures
RFC 6404, “Session PEERing for Multimedia INTerconnect Security Threats and Suggested Countermeasures”, is an Informational document published in November 2011 by J. Seedorf, S. Niccolini, E. Chen, H. Scholz. The canonical text is published by the RFC Editor.
Abstract
The Session PEERing for Multimedia INTerconnect (SPEERMINT) working group (WG) provides a peering framework that leverages the building blocks of existing IETF-defined protocols such as SIP and ENUM for the interconnection between SIP Service Providers (SSPs). The objective of this document is to identify and enumerate SPEERMINT- specific threat vectors and to give guidance for implementers on selecting appropriate countermeasures. Security requirements for SPEERMINT that have been derived from the threats detailed in this document can be found in RFC 6271; this document provides concrete countermeasures to meet those SPEERMINT security requirements. In this document, the different security threats related to SPEERMINT are classified into threats to the Lookup Function (LUF), the Location Routing Function (LRF), the Signaling Function (SF), and the Media Function (MF) of a specific SIP Service Provider. Various instances of the threats are briefly introduced inside the classification. Finally, existing security solutions for SIP and RTP/RTCP (Real-time Transport Control Protocol) are presented to describe countermeasures currently available for such threats. Each SSP may have connections to one or more remote SSPs through peering or transit contracts. A potentially compromised remote SSP that attacks other SSPs is out of the scope of this document; this document focuses on attacks on an SSP from outside the trust domain such an SSP may have with other SSPs. This document is not an Internet Standards Track specification; it is published for informational purposes.
What “Informational” means
Published for the general information of the community. It does not define an IETF standard and carries no standards-track status.
The canonical text of RFC 6404 is hosted at rfc-editor.org. Available in TXT,HTML.
- RFC 6403 Suite B Profile of Certificate Management over CMS
- RFC 6405 Voice over IP SIP Peering Use Cases
- RFC 6402 Certificate Management over CMS Updates
- RFC 6406 Session PEERing for Multimedia INTerconnect Architecture
- RFC 6401 RSVP Extensions for Admission Priority
- RFC 6407 The Group Domain of Interpretation
- RFC 6408 Diameter Straightforward-Naming Authority Pointer Usage
- RFC 6409 Message Submission for Mail