Who\’s calling?
Monday, June 30th, 2003An IETF draft outlining the requirements for an authorization framework for SIP:
SIP sessions have needs
for session authentication, authorization and accounting. In order to
perform AAA, SIP entities need to access AAA information (e.g., check
if the password provided by a user is correct or store accounting
records related to a particular session). Rather than collocating a
database with AAA information with every SIP entity in a network, it
is desirable to have a common logical AAA server accessible by all
the SIP entities. SIP entities use a SIP-AAA interface to access this
AAA server. This document outlines some requirements on this SIP-AAA
interface between SIP entities and AAA servers. This document is
intended as a generic document for SIP AAA requirements. It does not
intend to develop a charging and/or billing mechanism for SIP.




