My Oracle Support Banner

OCCAS Was Not Validating The Session Refresh Headers I.E Min_SE Header (Doc ID 2441992.1)

Last updated on SEPTEMBER 06, 2018

Applies to:

Oracle Communications Converged Application Server - Version 7.0.0.1.0 to 7.0.0.1.0 [Release 7.0.0]
Information in this document applies to any platform.

Symptoms

In OCCAS seeing inconsistent behavior with the Min-SE validation as per RFC-4028:
The Min-SE header field indicates the minimum value for the session interval, in units of delta-seconds. When used in an INVITE or UPDATE request, it indicates the smallest value of the session interval that can be used for that session. When present in a request or response, its value MUST NOT be less than 90 seconds.

When the header field is not present, its default value is 90 seconds.

The following call flow shows 2 re-INVITE (CSeq 130 and 131). Both contain a Min-SE value of 0. However, the first re-INVITE passes and the second fails per the spec.

Changes

 

Cause

To view full details, sign in with your My Oracle Support account.

Don't have a My Oracle Support account? Click to get started!


In this Document
Symptoms
Changes
Cause
Solution
References


My Oracle Support provides customers with access to over a million knowledge articles and a vibrant support community of peers and Oracle experts.