110 likes | 118 Views
Authors: Hannes Tschofenig Henning Schulzrinne. Implications of Trust Relationships for NSIS Signaling (draft-tschofenig-nsis-casp-midcom.txt). Scope. NSIS also aims to signaling non-QoS information Signaling NAT and firewall information is a possible NSIS application.
E N D
Authors: Hannes Tschofenig Henning Schulzrinne Implications of Trust Relationships for NSIS Signaling(draft-tschofenig-nsis-casp-midcom.txt)
Scope • NSIS also aims to signaling non-QoS information • Signaling NAT and firewall information is a possible NSIS application. • Focus: Security issues for signaling in-path NAT/firewall information. • Builds on previous TIST activities
Possible Trust Relationships Peer-to-Peer Trust Relationships (e.g. RSVP Integrity Object) Router 1 Router 2 Router 3 Node A Node B
Possible Trust Relationships End-to-Middle Trust Relationship (might be required for accounting, origin authentication, etc.; ) Router 1 Router 2 Router 3 Node A Node B
Possible Trust Relationships Middle-to-Middle Trust Relationship (e.g. local objects;authorization tokens) Router 1 Router 2 Router 3 Node A Node B
Possible Trust Relationships End-to-End Trust Relationship Router 1 Router 2 Router 3 Node A Node B
Peer-to-Peer Security only Administrative Domain A Core Network Administrative Domain B Security protection between end hosts and networks depends on scenario (=> Secure Network Access) Node A Node B
Intra-domain Trust Relationship Administrative Domain A Router • Edge routers must receive particular attention • Intra-domain signaling message protection is still required to “separated” NSIS nodes from non-NSIS nodes (by signaling message protection) Edge Router A Edge Router B PDP Router
End-to-Middle Authentication Administrative Domain A Core Network Administrative Domain B • In a firewall traversal environment user authentication might also be required to intermediate networks. User Credentials Node A Node B
Missing Trust Administrative Domain A Core Network Administrative Domain B • Without protection of signaling messages between the two networks a signaling message exchange might not be possible. • Alternatives: • Authorization Tokens • Signaling only at the local access network • Receiver-initiated signaling No Trust / No Security Protection Node A Node B
Differences What is the difference between signaling firewall and QoS information? • Trust relationships and authorization seem to be more important for firewall signaling (because of the nature of a firewall) • For QoS signaling accounting and charging is a very important issue (for firewall signaling probably not) • Lower number of devices need to store state / are affected by a firewall signaling protocol NAT handling • is also different to firewall signaling • must be addressed by NSIS to let the protocol operate correctly.