SIP messages in IPSec communication -
we have sip client (endpoint) , wanted integrate ipsec sip client. client sent security-client header server , server send security-server header client. in these messages, client , server sending spi-c , sip-s value each other further communication. please clarify me below questions ?
- do need two(i.e. server , client) spi values @ time of communication on udp or tcp ?
- at time of communication on ipsec how can share pre-shared key ?
from sip point of view -
to establish ipsec connection both endpoint share security attributes called security association (sa) contains multiple parameters.
there 2 security associations, 1 client server , server client. each sa contains 1 spi. yes there 2 spi involved.
ipsec uses ike (internet key exchange) key management. ike internally uses diffe hellman algorithm key exchange.
hope answers.
Comments
Post a Comment