The base SHAKEN specification provides replay-detection mechanisms to identify cases where a malicious entity attempts to masquerade as another user by replaying parts of a legitimate INVITE request. However, these mechanisms don’t cover cases where the INVITE is replayed within the short Date freshness window. This technical report describes how the mechanisms defined by [draft-ietf-stir-passport-divert] can be integrated within the SHAKEN framework to close this replay attack window.
ATIS 1000085
$126.00
Signature-Based Handling of Asserted Information Using Tokens (SHAKEN): SHAKEN Support of “div” PASSporT
Category: ATIS
Related products
$350.00