Dear Mike,
I checked H.245 V.3 from a security point of view and found out that the following issues have to be corrected:
Subsection Conference Response definitions is missing definition of ReturnSig which should be as follows:
ReturnSig ::= SEQUENCE { alias AliasAddress, responseRandom RandomVal, requestRandom RandomVal OPTIONAL, certificate TypedCertificate OPTIONAL - requested certificate } EncodedReturnSig ::= TYPE-IDENTIFIER.&Type (ReturnSig)
The following definition seems not to be used by any H.245 ASN.1 and looks rather redundant; thus it should be removed:
ChallengeString ::=OCTET STRING (SIZE(8..16))
Please incorporate these changes to the text. Thank you.
Martin.
----------------------------------------------------------------------- | Dipl.-Inf. Phone: +49 89 636-46201 | Martin Euchner Fax : +49 89 636-48000 | Siemens AG | ZT IK 3 e-mail: Martin.Euchner@mchp.siemens.de | | Otto-Hahn-Ring 6 | 81730 Muenchen | __________________ | Germany -----------------------------------------------------------------------
----------------------------------------------------------------------- | Dipl.-Inf. Phone: +49 89 636-46201 | Martin Euchner Fax : +49 89 636-48000 | Siemens AG | ZT IK 3 e-mail: Martin.Euchner@mchp.siemens.de | | Otto-Hahn-Ring 6 | 81730 Muenchen | __________________ | Germany -----------------------------------------------------------------------