[asterisk-bugs] [JIRA] (ASTERISK-17721) Incoming SRTP calls that specify a key lifetime fail

David Brillert (JIRA) noreply at issues.asterisk.org
Sun Nov 11 21:12:21 CST 2012


    [ https://issues.asterisk.org/jira/browse/ASTERISK-17721?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=199551#comment-199551 ] 

David Brillert commented on ASTERISK-17721:
-------------------------------------------

Aastra also sends this parameter and all calls are rejected by Asterisk.
Tested in 1.8
                
> Incoming SRTP calls that specify a key lifetime fail
> ----------------------------------------------------
>
>                 Key: ASTERISK-17721
>                 URL: https://issues.asterisk.org/jira/browse/ASTERISK-17721
>             Project: Asterisk
>          Issue Type: Bug
>          Components: Channels/chan_sip/SRTP
>            Reporter: Terry Wilson
>            Severity: Minor
>
> Asterisk's SRTP implementation does not understand the key lifetime attribute in an a=cyrpto line. Since some phones specify this (and are not configurable in this regard), Asterisk really needs to implement support for this.
> ****** STEPS TO REPRODUCE ******
> I believe recent Grandstream firmware releases send this parameter. Any call with this specified will be rejected by Asterisk.
> ****** ADDITIONAL INFORMATION ******
> The default key lifetime for AES_CM_128_HMAC_SHA1_32 or 80 is 2^48 SRTP packets (or 2^31 SRTCP packets whichever comes first). At 50 packets/second this is 178,391 years...a decidedly long call.

--
This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators
For more information on JIRA, see: http://www.atlassian.com/software/jira



More information about the asterisk-bugs mailing list