[asterisk-dev] AES-GCM mode SRTP

Leandro Dardini ldardini at gmail.com
Thu Nov 7 12:00:25 CST 2013


SRTP has gained a lots of interest in the last few weeks and some of my
clients are requesting it. I was not aware of multiple encryption options
for SRTP, but it will be nice to be ready to face every kind of encryption
available.

Leandro


2013/11/7 Kristian Kielhofner <kris at kriskinc.com>

> Hello,
>
>   I'm working on getting AES-GCM mode supported with SRTP.  Long story
> short it offers significant performance advantages, especially on
> systems that support AES-NI.
>
>   There is a branch of libsrtp that supports AES-NI and AES-GCM via
> openssl:
>
> https://github.com/cisco/libsrtp/tree/feature-openssl
>
>   IETF draft:
>
> http://tools.ietf.org/html/draft-ietf-avtcore-srtp-aes-gcm-10
>
>   I'm currently testing support for AES_GCM_128_8 with pjsip and
> FreeSWITCH (it works).  I'd love to add Asterisk to this list.  I'm
> working on a patch (I just can't seem to get chan_sip to prefer
> AES_GCM_128_8) but in the meantime I thought I'd check with the list
> to see if there's any interest or work done on this already.
>
> Thanks!
>
> --
> Kristian Kielhofner
>
> --
> _____________________________________________________________________
> -- Bandwidth and Colocation Provided by http://www.api-digital.com --
>
> asterisk-dev mailing list
> To UNSUBSCRIBE or update options visit:
>    http://lists.digium.com/mailman/listinfo/asterisk-dev
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.digium.com/pipermail/asterisk-dev/attachments/20131107/a91b369a/attachment.html>


More information about the asterisk-dev mailing list