WebRTC Certificate during DTLS

General Tech Bugs & Fixes 2 years ago

2 2 0 0 0 tuteeHUB earn credit +10 pts

5 Star Rating 1 Rating

Posted on 30 Aug 2022, this text provides information on Bugs & Fixes related to General Tech. Please note that while accuracy is prioritized, the data presented might not be entirely correct or up-to-date. This information is offered for general knowledge and informational purposes only, and should not be considered as a substitute for professional advice.

Take Quiz To Earn Credits!

Turn Your Knowledge into Earnings.

tuteehub_quiz

Answers (2)

Post Answer
profilepic.png
manpreet Tuteehub forum best answer Best Answer 2 years ago

We are trying to make more secure a WebRTC gateway. To ensure this, we decide to validate incoming WebRTC certificate via OCSP/CRL, but when we took a Wireshark capture, we realized that WebRTC using a self-signed certificate during DTLS as you can see from the link at below;

WebRTC Self-Signed Image

Because of self-signed certificate, there is no way to use OCSP/CRL. So is there any way to import and use CA-signed certificate for WebRTC engine?

profilepic.png
manpreet 2 years ago

WebRTC has generateCertificate() static function where you can specify the algorithm for signing certificates.

From the link above:

RTCPeerConnection.generateCertificate({
    name: 'RSASSA-PKCS1-v1_5',
    hash: 'SHA-256',
    modulusLength: 2048,
    publicExponent: new Uint8Array([1, 0, 1])
}).then(function(cert) {
    var pc = new RTCPeerConnection({certificates: [cert]});
});

2 views   0 shares

No matter what stage you're at in your education or career, TuteeHub will help you reach the next level that you're aiming for. Simply,Choose a subject/topic and get started in self-paced practice sessions to improve your knowledge and scores.