[SIPForum-discussion] How to use TLS over UDP

Gast, Jim jim.gast at tdstelecom.com
Fri Mar 22 21:44:54 UTC 2013


Hi, Khoa -

Re: If I want confidentiality, can I use SIP over TLS and still choose UDP instead of TCP?

There are 2 answers:

-          Choose TCP if you want confidentiality.  There are also other reasons to do SIP over TCP.  For example SIP NOTIFY messages can get very large if the customer is using lots of Busy-Lamp-Fields.  In UDP, messages larger than the MTU (Maximum Transmission Unit) have to be sent in fragments.  Fragmented UDP can be problematic.  There have been lively discussions in this forum on the choice of SIP over TCP versus SIP over UDP.

-          If you still do not want to use TCP, you can use the datagram (UDP) version of TLS, called DTLS (Datagram TLS).

Jim Gast , TDS Telecom

Time flies like an arrow.  Fruit flies like a banana.

From: discussion-bounces at sipforum.org [mailto:discussion-bounces at sipforum.org] On Behalf Of Khoa Pham
Sent: Wednesday, March 20, 2013 11:24 PM
To: discussion at sipforum.org
Subject: [SIPForum-discussion] How to use TLS over UDP

Hi,

AFAIK, SIP works best with UDP, because SIP handles all the handshake itself.
But TLS is based on TCP, which makes SIP handshake useless.

How to use TLS over UDP ?

--
Khoa Pham
HCMC University of Science
Faculty of Information Technology
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://sipforum.org/pipermail/discussion/attachments/20130322/3296b43d/attachment-0002.html>


More information about the discussion mailing list