[VOIPSEC] SIP B2BUA and Digest Authentication using RADIUS AAA

Baruch Sterman baruch at tekhelet.com
Wed Nov 2 04:43:35 GMT 2005


You can check out the draft:
http://www1.cs.columbia.edu/sip/drafts/sip/draft-sterman-aaa-sip-04.txt

(We really should try to move this to RFC!)

Baruch

-----Original Message-----
From: Voipsec-bounces at voipsa.org [mailto:Voipsec-bounces at voipsa.org] On
Behalf Of satyam tyagi
Sent: Wednesday, November 02, 2005 4:30 AM
To: Voipsec at voipsa.org
Subject: [VOIPSEC] SIP B2BUA and Digest Authentication using RADIUS AAA

Hi all,

We have a scenario, in which we want both the phone and SIP call server to 
be able to challenge each other. Hence, the choice of B2BUA. But, we don't 
want to store secret passwords on the B2BUA and instead have a RADIUS 
interface.

Since the RADIUS only supports validating SIP responses. Is there anyway the

SIP call server can respond to the challenge (401) sent by phone but not 
having tp store passwords locally(on B2BUA).

If this is not possible to accomplish with RADIUS. Is there any other 
protocol which AAA servers support such as DIAMETER which will allow us to 
accomplish this.

Thanks,
Satyam



_______________________________________________
Voipsec mailing list
Voipsec at voipsa.org
http://voipsa.org/mailman/listinfo/voipsec_voipsa.org





More information about the Voipsec mailing list