SIP End-to-End Security within NAT/Firewall Traversal

He Zhiwei,Huang Benxiong,Wang Furong
DOI: https://doi.org/10.3969/j.issn.1672-9722.2006.11.026
2006-01-01
Abstract:This paper describes an extension for the session initiation protocol(SIP),which enables end-to-end security of the session description protocol(SDP) together with firewall/network address translation(NAT) traversal.This solution bases on secure multipurpose internet mail extension(S/MIME) and the middlebox communications(MIDCOM) protocol.The user authorizes a proxy server to encrypt the session description on behalf of the user.The proxy determines the capabilities of the receiving party and encrypts the SDP for a SIP proxy server in the receiving domain.As long as each end-user may contact its trustworthy SIP proxy via a secure connection and authorize this proxy to encrypt the signaling data,the session information is secured end-to-end.
What problem does this paper attempt to address?