Archived U.S. Government Approved Protection Profile - Protection Profile for Mobility - Voice Over IP Application Version 0.6
Short Name: pp_mobility_voip_v0.6
Technology Type: VoIP
CC Version: 3.1
Transition End Date: 2013.07.28
Succeeded By: pp_voip_v1.2
Sunset Date: 2013.10.23
Conformance Claim: NoneProtection Profile
The VoIP Application in the context of this PP is considered to be a VoIP client that interacts with a SIP Server which provides registrar and proxy capabilities required for call-session management via SIP requests and responses to establish, process, and terminate VoIP calls.
Compliant TOEs will provide security functionality that addresses threats to the TOE. Compliant TOEs must protect communications between itself and another VoIP client (i.e., cell phone) by the use of a Session Description Protocol Security Descriptions for Media Streams - Secure Real-Time Transport Protocol (SDES-SRTP) protected channel. Likewise, compliant TOEs must also protect communications between itself and the SIP Server by the use of a Transport Layer Security (TLS) protected signaling channel.
SECURITY EVALUATION SUMMARY