header background

OAuth Authentication and Identity Validation in SIP Systems

FOSDEM25 - OAuth Authentication and Identity Validation in SIP Systems

Jehan Monnier, Co-founder of Belledonne Communications

In this video, we explore the integration of OAuth 2.0 and OpenID Connect into real-time communication systems using the SIP (Session Initiation Protocol). OAuth 2.0, as defined in RFC 8898, provides a modern and secure authentication method by using authentication tokens instead of traditional methods like Digest. This “Single Sign-On” approach simplifies identity verification across systems and is now being applied to VoIP.

Join us as we demonstrate how OAuth 2.0 and OpenID Connect can be integrated into a modern SIP environment, focusing on managing and validating access tokens using Flexisip, a SIP server solution.

Key Topics Covered:

– Introduction to OAuth 2.0 and OpenID Connect for SIP authentication.
– Using JWT for authentication: validating token signatures and extracting user identity.
– Integrating OAuth with Flexisip: A practical demonstration of token validation in a SIP environment.
– Authorization management: Controlling access based on identity information extracted from tokens.

This video provides a comprehensive overview of securing user authentication with OAuth 2.0 and JWT in SIP servers, using Flexisip as a concrete example.

🇬🇧 This conference is in English.

FOSDEM25 - OAuth Authentication and Identity Validation in SIP Systems