• Keine Ergebnisse gefunden

Influence of Security Mechanisms on the Quality of Service of...

N/A
N/A
Protected

Academic year: 2021

Aktie "Influence of Security Mechanisms on the Quality of Service of..."

Copied!
23
0
0

Wird geladen.... (Jetzt Volltext ansehen)

Volltext

(1)

Influence of Security Mechanisms

on the Quality of Service of VoIP

Peter Backs Sirrix AG

(2)

Agenda

• Introduction to VoIP Security

• Impact on VoIP Quality

• Influence of Security Mechanisms

• Summary

(3)

Agenda

• Introduction to VoIP Security

• Impact on VoIP Quality

• Influence of Security Mechanisms

• Summary

(4)

Introduction to VoIP Security (1/2)

Internet SIP / SDP RTP / RTCP SIP / SDP SIP / SDP A B

(5)

Introduction to VoIP Security (2/2)

• Need for security

– Confidentiality • Authentication • Integrity • Reliability • Availability SIP / SDP RTP / RTCP SIP / SDP SIP / SDP A B Server A Server B

(6)

VPN-based Security

Organisation A, Site 1 Organisation A, Site 2 VPN Tunnel Organisation B

Intranet, E-Mail, etc. VoIP

Unsecured VoIP!

(7)

VoIP‘s own Security Mechanisms

Internet Organisation A, Site 1 Organisation A, Site 2 Voice media SIP SSL / TLS SRTP

(8)

Agenda

• Introduction to VoIP Security

• Impact on VoIP Quality

• Influence of Security Mechanisms

• Summary

(9)

Introduction in Quality of Service

The term Quality of Service (QoS) is defined as a certain guarantee of network service requirements.

Requirements for VoIP:

• Delay: < 150 ms

• Jitter: Reasonably low

• Packet loss: Reasonably low • Bandwidth: Sufficient

(10)

Impact on QoS of VoIP

Speech coding Serialization Data Transmission Jitter Buffer TEE Codec G.711: -Speech coding: < 30 ms Network Delay Load

-Serialization: 160+54 Byte / 10 Mbit/s < 1 ms  (128 Kbit/s ~ 13,4 ms) -Data Transmission: 48 ms (~12 Router - depended on the load)

-Jitter Buffer: < 30 ms

Mouth-To-Ear view

(11)

Agenda

• Introduction to VoIP Security

• Impact on VoIP Quality

• Influence of Security Mechanisms

(12)

Impact of VPN-based security:

Test network

(13)

Impact of VPN-based security: Results

• Negligible increase in Delay • No impact on Jitter and Packet Loss

(14)

VPN Gateway Load

• Throughput capability depends on

– Security mechanism – Gateway hardware – Network packet size

VPN Tunnel

Intranet, E-mail, etc. VoIP

(15)
(16)

VoIP-specific Security Mechanisms

• SRTP

– Reasonable conclusion

• No impact on QoS parameters

– Delay – Jitter

(17)
(18)

Overhead with VPN

VPN

RTP

(19)

Overhead with SRTP

(20)

Agenda

• Introduction to VoIP Security

• Impact on VoIP Quality

• Influence of Security Mechanisms

(21)

Comparison

VPN-based security VoIP-specific security

- PKI required - PKI required (not ZRTP)

- Security via WAN, not LAN + End-to-end security

+ Transparent security mechanism

- Requires its own security infrastructure

+ Usually exists already - Needs to be introduced with VoIP - Significant increase of

network overhead

+ Small increase of network overhead

- Heavy stress on VPN

gateways (large installations)

+ Additional system load is distributed across the clients

(22)

Summary

• Security mechanisms have no significant impact on

– Delay – Jitter – Packet Loss • as opposed to – Overhead – Gateway load

(23)

Peter Backs, Sirrix AG <p.backs@sirrix.com>

Norbert Pohlmann, Institute for Internet Security –if(is) <pohlmann@internet-sicherheit.de>

Thank you for your attention!

Any questions?

Influence of Security Mechanisms

on the Quality of Service of VoIP

Referenzen

ÄHNLICHE DOKUMENTE

Launched by two independent global think tanks, the Centre for International Governance Innovation (CIGI) and Chatham House, the Global Commission on Internet Governance will

The integrity of the voting system must be protected to ensure its secure function. This includes software and hardware. Especially the safety of the hardware can only be

The United States is contemplating further reductions of its nuclear forces, below the levels agreed with Russia under the 2011 New Strategic Arms Reduction Treaty (1,550

The reason why HoK+ mitigates the RelayState Spoofing attack is that no SAML assertion will be issued by IdP in case of an attack, since the authentication request is bound to the

The First Eye Movement Verification and Identification Competition (EMVIC) organized in 2012 as an official BTAS conference competition [KKK12] was the first to establish a

Purpose To study the impact of smell loss on quality of life in patients with Coronavirus Disease 2019 (COVID-19), and assess the importance of olfaction before and after the loss

Treating future Social Security benefits as a form of wealth, it projects the impact of a gradual increase in the normal retirement age from 67 to 70 (2 months a

Prior to joining Central European University, Andreas worked as a transatlantic postdoc fellow in international relations and security with the Paul Nitze School of Advanced