Skip to content

Conversation

@jdrosen
Copy link
Collaborator

@jdrosen jdrosen commented Apr 11, 2020

Added new e2e crypto text

@jdrosen jdrosen requested a review from fluffy April 11, 2020 13:30
Copy link
Member

@fluffy fluffy left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Looks good to me - I asked Barnes and EKR for their thoughts too

@jdrosen
Copy link
Collaborator Author

jdrosen commented Apr 11, 2020

Do you want to wait for their review before merging?

out of scope, and is expected to be handled by other protocols such as
MLS. This extension will also utilize STIR for callerID.
and requires hop by hop encryption (i.e., https). The protocol will
also specify a technnique for encapsulated e2e encrypted media

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I would propose that E2E encryption of media should be mandatory, just like SRTP is mandatory in WebRTC. It should never be possible for elements in the middle just to grab stuff, without explicit authorization. So something like:

The protocol will carry media in an end-to-end encrypted form in order to prevent access by unauthorized intermediary devices. (Some authorized intermediaries may be provided with keys, depending on the key management protocol.)

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants