[Asterisk-Dev] AES voice encryption for IAX2

Olle E. Johansson oej at edvina.net
Fri Apr 16 12:16:29 MST 2004


Jeremy McNamara wrote:
> Tracy R Reed wrote:
> 
>> It would seem to me that tunneling over ipsec or ipv6 or stunnel or any
>> number of other standard means would work just fine rather than
>> reinventing the wheel by integrating encryption with IAX.
>>  
>>
> 
> Then one could not have a mobile method of encryption...you would be 
> locked down to that specific network and trying to establish a VPN is 
> just not very efficient.
Application layer encryption is preferred, then the PBX can rest assured
that a session is encrypted point to point. With VPNs, the PBX doesn't
have a clue if the call is protected or not.

I think IAX2 session encryption is important. For E911 calls (coming
IETF standards) encryption from point to point will be mandatory.
So we'd better fix this.

I would also like to see Windows IAX clients implementing IAX2
key authentication. Hint, hint.

Have a notion that someone down there is feeling the pressure :-)

/O



More information about the asterisk-dev mailing list