You are on page 1of 9

DTLS-SRTP Key Transport

MSEC Working Group


draft-wing-avt-dtls-srtp-key-transport-01
Dan Wing, dwing@cisco.com

Overview
IETF68 (Prague), RTPSEC BoF selected
DTLS-SRTP as the preferred SRTP keying
mechanism
Only unicast, point-to-point was in scope
DTLS-SRTP Key Transport allows efficient
SRTP operation for
Several unicast conferencing scenarios
Multicast

Why Consider DTLS-SRTP for


Multicast?
DTLS-SRTP works for group of 2
GDOI-SRTP is overkill for a group of 3
Useful for a larger group

DTLS-SRTP-Key-Transport allows
optimizing SRTP keying for small groups

Operation of
DTLS-SRTP Key Transport
for
Multicast

DTLS-SRTP-Key-Transport
DTLS-SRTP-Key-Transport is negotiated
during TLS handshake
DTLS-SRTP session stays up for duration
of call
SRTP key is sent within the DTLS session
itself
As a new TLS content-type

DTLS session with each listener


1. Each listener establishes unicast DTLSSRTP session with speaker
2. Speaker uses DTLS-SRTP Key
Transport to tell every listener the same
SRTP key
Listener 1
speaker

Listener 2
Listener 3

DTLS-SRTP, transport speakers SRTP key A

SRTP multicasting
SRTP packets are then multicasted to
listeners

Listener 1
speaker

SRTP packet,
key A

Listener 2

Listener 3

DTLS-SRTP-Key-Transport
DTLS-SRTP-Key-Transport is negotiated
during TLS handshake
DTLS-SRTP session stays up for duration
of call
SRTP key is sent within the DTLS session
itself
As a new TLS content-type

Questions
draft-wing-avt-dtls-srtp-key-transport-01
Dan Wing, dwing@cisco.com

You might also like