Source record · tier 1 standards and regulators
RFC 8827: WebRTC Security Architecture
- Publisher
- IETF / RFC Editor
- URL
- https://www.rfc-editor.org/rfc/rfc8827.html
- Published
- 2021-01-01
- Updated
- unknown
- Accessed
- 2026-09-23
- HTTP status
- 200
- License
- IETF Trust Legal Provisions (BCP 78); no-redistribution; short excerpts and locators only
Source notes citing this source
- RFC 8827 requires WebRTC implementations to support DTLS and DTLS-SRTP for SRTP keying. in context
- RFC 8827 requires all WebRTC media to be protected with SRTP and SRTCP, forbids plain RTP or RTCP, and allows no NULL-encryption suites. in context
- RFC 8827 forbids WebRTC implementations from offering SDP Security Descriptions (SDES) or selecting them if offered. in context
- WebRTC implementations must periodically verify continued consent to send using the RFC 7675 consent freshness mechanism (ICE Binding Requests), not plain STUN keepalives. in context
- All WebRTC implementations must support DTLS 1.2 with the TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256 cipher suite. in context
- WebRTC implementations must refuse all device permission grants to plain HTTP origins, so browser agent clients must be served over HTTPS. in context
- WebRTC implementations must obtain explicit user consent before giving an application access to the camera or microphone. in context
- RFC 8827 requires the WebRTC API to let the application restrict ICE to TURN relay candidates so that the peer does not learn the user's IP addresses. in context
- WebRTC implementations must not offer SDP security descriptions (SDES, RFC 4568) nor select SDES if it is offered; keying is DTLS-SRTP. in context
- All WebRTC media channels must be secured with SRTP and SRTCP; plaintext RTP/RTCP must not be sent and null cipher suites must not be negotiated. in context
Cite this source record
APA
WarmTransfer. (2021, January 1). RFC 8827: WebRTC Security Architecture. WarmTransfer. https://warmtransfer.net/knowledge/sources/rfc-8827-webrtc-security-arch
BibTeX
@misc{warmtransfer-rfc-8827-webrtc-security-arch,
title = {RFC 8827: WebRTC Security Architecture},
author = {{WarmTransfer}},
year = {2021},
url = {https://warmtransfer.net/knowledge/sources/rfc-8827-webrtc-security-arch},
note = {IETF / RFC Editor, accessed 2026-09-23}
}