SDES
E127264
SDES (Session Description Protocol Security Descriptions) is a key management mechanism used to negotiate and convey cryptographic parameters for securing media streams in real-time communication protocols.
All labels observed (2)
Statements (45)
| Predicate | Object |
|---|---|
| instanceOf |
key management mechanism
ⓘ
security mechanism ⓘ |
| abbreviationFor |
Session Description Protocol
ⓘ
surface form:
Session Description Protocol Security Descriptions
|
| associatedWith |
RTP
ⓘ
Session Initiation Protocol ⓘ
surface form:
SIP
real-time communication frameworks ⓘ |
| category |
key management for RTP
ⓘ
media security ⓘ |
| comparedWith |
DTLS-SRTP
ⓘ
MIKEY ⓘ |
| conveys |
SRTP parameters
ⓘ
crypto suites ⓘ encryption keys ⓘ |
| definedIn | SDP ⓘ |
| deployment | legacy VoIP systems ⓘ |
| deploymentTrend | being replaced by DTLS-SRTP in modern systems ⓘ |
| designGoal | simple key negotiation using SDP ⓘ |
| fullName |
Session Description Protocol
ⓘ
surface form:
Session Description Protocol Security Descriptions
|
| negotiates |
authentication parameters for SRTP
ⓘ
cipher algorithms for SRTP ⓘ key lifetime parameters ⓘ |
| notResponsibleFor | signaling channel security ⓘ |
| operatesAtLayer | application layer ⓘ |
| purpose |
convey cryptographic parameters
ⓘ
negotiate cryptographic parameters ⓘ secure media streams ⓘ |
| relatedTo |
SRTP
ⓘ
SRTP for secure media transport ⓘ
surface form:
Secure Real-time Transport Protocol
|
| requires |
signaling channel confidentiality
ⓘ
signaling channel integrity ⓘ |
| scope | media-plane security parameters ⓘ |
| securityLimitation |
depends on signaling channel protection
ⓘ
keys exposed to signaling path ⓘ |
| securityProperty | provides media confidentiality when used with SRTP ⓘ |
| specifiedFor | offer/answer model in SDP ⓘ |
| status | considered less secure than DTLS-SRTP ⓘ |
| threat |
key disclosure on compromised signaling servers
ⓘ
man-in-the-middle attacks on signaling ⓘ |
| transportMechanism | in-band via SDP ⓘ |
| usedFor | SRTP key management ⓘ |
| usedIn | real-time communication protocols ⓘ |
| usedInContext |
VoIP
ⓘ
real-time multimedia sessions ⓘ video conferencing ⓘ |
| usesProtocol | Session Description Protocol ⓘ |
Referenced by (2)
Full triples — surface form annotated when it differs from this entity's canonical label.
subject surface form:
Secure Real-time Transport Protocol