<?xml version="1.0" encoding="UTF-8"?>
  <?xml-stylesheet type="text/xsl" href="rfc2629.xslt" ?>
  <!-- generated by https://github.com/cabo/kramdown-rfc version 1.7.17 (Ruby 3.3.3) -->


<!DOCTYPE rfc  [
  <!ENTITY nbsp    "&#160;">
  <!ENTITY zwsp   "&#8203;">
  <!ENTITY nbhy   "&#8209;">
  <!ENTITY wj     "&#8288;">

]>


<rfc ipr="trust200902" docName="draft-ietf-sipcore-callinfo-rcd-12" category="std" consensus="true" submissionType="IETF" tocInclude="true" sortRefs="true" symRefs="true">
  <front>
    <title abbrev="Call-Info Rich Call Data">SIP Call-Info Parameters for Rich Call Data</title>

    <author initials="C." surname="Wendt" fullname="Chris Wendt">
      <organization>Somos</organization>
      <address>
        <postal>
          <country>US</country>
        </postal>
        <email>chris@appliedbits.com</email>
      </address>
    </author>
    <author initials="J." surname="Peterson" fullname="Jon Peterson">
      <organization>Neustar</organization>
      <address>
        <postal>
          <country>US</country>
        </postal>
        <email>jon.peterson@neustar.biz</email>
      </address>
    </author>

    <date year="2024" month="July" day="21"/>

    <area>art</area>
    
    <keyword>Identity</keyword>

    <abstract>


<?line 68?>

<t>This document describes a usage of the SIP Call-Info header field that incorporates Rich Call Data (RCD) associated with the identity of the calling party in order to provide to the called party a description of the caller or details about the reason for the call. RCD includes information about the caller beyond the telephone number such as a calling name, or a logo, photo, or jCard object representing the caller, which can help the called party decide whether to answer the phone. The elements defined for this purpose are intended to be extensible in order to accommodate related information about calls and to be compatible and complimentary with the STIR/PASSporT RCD framework.</t>

<t>This document defines three new parameters 'call-reason', 'verified', and 'integrity' for the SIP Call-Info header field and also a new token ("jcard") for the 'purpose' parameter of the Call-Info header field. It also provides guidance on the use of the Call-Info 'purpose' parameter token, "icon".</t>



    </abstract>



  </front>

  <middle>


<?line 74?>

<section anchor="introduction"><name>Introduction</name>

<t>Signaling protocols in telephone networks have long supported the delivery of a 'calling name' from the originating side to the terminating side, though in practice, the terminating side is often left to derive a name from the calling-party number by consulting a local address book or an external database. SIP <xref target="RFC3261"/> similarly can carry a 'display-name' in the From header field value from the originating to terminating side, though it is an unsecured field that is not commonly trusted and is often replaced or ignored. The same can be considered true of information in the Call-Info header field in SIP.</t>

<t>To allow calling parties to initiate, and called parties to receive, a more comprehensive, deterministic, and extensible Rich Call Data (RCD) for incoming calls, this document defines a new parameter ('call-reason') for the SIP Call-Info header field <xref target="RFC3261"/> and also a new token ("jcard") for the 'purpose' parameter of the Call-Info header field. For this document and depending on the policies of the communications system, a calling party could be either the end user device (e.g., a SIP user agent (UA)) or a network service as part of a telephone service provider. Similarly, a called party could be an end user device or the network telephone service provider acting on behalf of the recipient of the call.</t>

<t>In order to properly translate and communicate some of the authenticated and trusted properties of 'rcd' claims defined in <xref target="I-D.ietf-stir-passport-rcd"/>, this document defines two new parameters, 'verified' and 'integrity'. These parameters help translate RCD information that had been sent via a SIP network to, for example, a SIP entity on the edge of the network-to-network interface (NNI) that contains a verification service as defined in <xref target="RFC8224"/> and further defined specific to RCD information in <xref target="I-D.ietf-stir-passport-rcd"/>. The verification procedures include the concepts of successful verification of the "rcd" claims and can be correspondingly translated and represented in the Call-Info header field via these new parameters.</t>

<t>Used on its own, this specification assumes that the called party UA can trust the SIP network or the SIP provider to assign, deliver, and protect the correct RCD information as an end-to-end security policy.  However, as is true in many interconnected communications services, this end-to-end trust cannot be guaranteed. Therefore, the recommended approach is that the entity inserting the Call-Info header field should also sign the caller information via STIR-defined protocol tools <xref target="RFC7340"/> for SIP <xref target="RFC8224"/> and specifically through the use of RCD or the "rcd" PASSporT defined in <xref target="I-D.ietf-stir-passport-rcd"/>.</t>

<t>Alternatively, this specification can be utilized in conjunction with the protocols defined in <xref target="I-D.ietf-stir-passport-rcd"/> as part of the communications signaling path, specifically in the trusted UNI device interface at the terminating side as part of an authenticated, network-to-device, trusted signaling where a device may not have the ability to verify the "rcd" PASSporT, but it can receive the RCD information from the Call-Info header field as defined in this specification.</t>

<t><xref target="RFC7852"/> provides a means of carrying additional data about callers for the purposes of emergency services (especially Section <xref target="RFC7852" section="4.4" sectionFormat="bare">Owner/Subscriber Information</xref> of <xref target="RFC7852"/>).  This specification provides an overlapping functionality for non-emergency cases.  Rather than overloading its "EmergencyCallData" Call-Info 'purpose' parameter value, this document defines a separate 'purpose' parameter for the more generic delivery of information via jCard <xref target="RFC7095"/>.  This document borrows from <xref target="RFC7852"/> the capability to carry a data structure as a body, through the use of the "cid" URI scheme <xref target="RFC2392"/>.</t>

</section>
<section anchor="terminology"><name>Terminology</name>

<t>The key words "MUST", "MUST NOT", "REQUIRED", "SHALL", "SHALL NOT", "SHOULD", "SHOULD NOT", "RECOMMENDED", "NOT RECOMMENDED", "MAY", and "OPTIONAL" in this document are to be interpreted as described in BCP 14 <xref target="RFC2119"/> <xref target="RFC8174"/> when, and only when, they appear in all capitals, as shown here.</t>

</section>
<section anchor="overview"><name>Overview</name>

<t>In this document, we provide a framework for the use of Call-Info header field to carry RCD in SIP <xref target="RFC3261"/>. The Call-Info header field (defined in <xref section="20.9" sectionFormat="comma" target="RFC3261"/>) defines a 'purpose' parameter. In addition to providing guidance on calling name practices and the use of the existing 'purpose' parameter token,     "icon", this document expands on other types of RCD by defining a new 'purpose' token, "jcard", and three new parameters, 'call-reason', 'verified', and 'integrity' for the Call-Info header field to align with RCD as defined in the STIR framework <xref target="RFC8224"/> and with "rcd" PASSporTs defined in <xref target="I-D.ietf-stir-passport-rcd"/>.</t>

<t>The 'purpose' parameter token "jcard" is used to associate RCD related to the identity of the calling party in the form of a jCard <xref target="RFC7095"/>. While there is a "card" token defined in <xref target="RFC3261"/> which could be considered to have an overlapping purpose, the "jcard" token is intended to denote the jCard profile defined in this document for use in the Call-Info header field for RCD. The choice of jCard in this specification is guided by two things. First, JSON has become the default and is generally the widely accepted, optimally supported format for transmission, parsing, and manipulation of data on IP networks, and jCard represents an extensible method of providing information about a person or business associated with a call. Second, jCard has been defined in <xref target="I-D.ietf-stir-passport-rcd"/> and has been adopted by PASSporT <xref target="RFC8225"/> because of the usage of JSON Web Tokens (JWT) <xref target="RFC7519"/>.</t>

<t>The new Call-Info header field parameter 'call-reason' provides a string or other object that conveys the caller's intent or reason for calling to help the called party understand the context and intent of the call and why they may want to answer the call.</t>

<t>The new Call-Info header field parameter 'verified' provides an indication, with the value "true", to represent the results of the verification procedures that were performed by the sender of the Call-Info header field.  The new Call-Info header field parameter 'integrity' provides a mechanism to associate an integrity hash string, as defined in <xref target="I-D.ietf-stir-passport-rcd"/> in Section 8.2, that is associated with the content of the resource referenced by the URI represented in the Call-Info header field.</t>

</section>
<section anchor="a-call-info-framework-for-carrying-rich-call-data"><name>A Call-Info Framework for Carrying Rich Call Data</name>

<t>This specification extends the Call-Info header field to be compatible and complimentary to the RCD framework defined in <xref target="I-D.ietf-stir-passport-rcd"/>. Typically, a SIP-based call involves multiple hops through different trusted and untrusted networks. The STIR framework <xref target="RFC7340"/> addresses the protection of the carriage of call information and identities over untrusted networks, which wasn't addressed in the core SIP specifications.  <xref section="20.9" sectionFormat="comma" target="RFC3261"/> defines the Call-Info header field as the mechanism for carrying call- and caller-related information and also provides procedures for defining new 'purpose' parameter tokens. This document discusses the use of existing tokens and defines a new 'purpose' token to correspond to the RCD framework.</t>

<t>There are a number of RCD information types that can be transmitted in the Call-Info header field of a SIP request.  The STIR RCD specification <xref target="I-D.ietf-stir-passport-rcd"/> defines calling name, a logo or icon associated with the caller, and a call reason string. It also discusses an extensible way of carrying caller information using jCard <xref target="RFC7095"/>. It may be that future specifications extend information types and, similar to how this document extends the Call-Info header field to provide corresponding functionality to STIR RCD, it is RECOMMENDED that future specifications also provide corresponding Call-Info extensions.</t>

<t>The RCD framework defined both in this document as well as in <xref target="I-D.ietf-stir-passport-rcd"/> carries call-specific information. The insertion of RCD is intended to be singular in that the receiving party should not be required to make any call-specific decisions based on redundant, duplicate, or conflicting RCD. The RCD information is either intended to be added by a party that is authoritative over that information or to have been translated from a verified STIR RCD PASSporT and unmodified once in a trusted domain. Any additional parties involved in the call path SHOULD NOT modify the Call-Info header field or add additional Call-Info header fields related to RCD. The insertion of the RCD Call-Info header field should be considered a trusted action based on trusted information, and the information SHOULD NOT be considered modifiable as a best practice.</t>

<t>As discussed in <xref target="I-D.ietf-stir-passport-rcd"/>, the calling name uses the display-name value of the From header field <xref target="RFC3261"/> of the request. Alternatively, for some calls, the calling name may come from the P-Asserted-ID header field <xref target="RFC3325"/>.  While this is out of scope for Call-Info header field in terms of the representation of the display-name value, this document does discuss the representation of the verification of this value using the 'verified' parameter.</t>

<t>For logos or icons that can represent the calling party, the 'purpose' token "icon" <xref target="RFC3261"/> is used to indicate a URI for an image resource that can be displayed to the user receiving the SIP request.  For the purpose of this document and the transmission of RCD, the "icon" 'purpose' token should be used as defined.  Section 8.2 provides high-level guidance on image formatting and related information.</t>

<t>This document defines 'call-reason' as a new parameter for the Call-Info header field. This parameter carries a string indicating the reason for the call.</t>

<t>jCard is a comprehensive and extensible mechanism defined in the STIR RCD framework. While <xref target="RFC3261"/> specifies a "card" 'purpose' token, the intent of defining a new "jcard" 'purpose' token is to use the JSON jCard format <xref target="RFC7095"/> and to provide guidance for the use and non-use of jCard attributes to describe the calling party in a communications session as well to provide some security considerations around that information.  These topics are covered in the next sections.</t>

</section>
<section anchor="jcard-call-info-purpose-token"><name>"jcard" Call-Info 'purpose' Token</name>

<t>The Call-Info 'purpose' token "jcard" indicates support of RCD associated with the identity of a calling party in a SIP call <xref section="20.9" sectionFormat="comma" target="RFC3261"/>.  The format of a Call-Info header field when using the "jcard" token is as follows.</t>

<t>The Call-Info header field is defined to include a URI that points to a resource that is a jCard JSON object <xref target="RFC7095"/>. The media type for the JSON text MUST be set as application/json with a default encoding of UTF-8 <xref target="RFC8259"/>. This MAY be carried directly in the Call-Info header field URI using the "data" URI scheme. A jCard also MAY be carried in the body of the SIP request bearing this Call-Info header field via the "cid" URI scheme <xref target="RFC2392"/>. Alternatively, the URI MUST define the use HTTPS or a transport that can validate the integrity of the source of the resource as well as the transport channel through which the resource is retrieved. If, in the specific deployment environment of SIP, the source or integrity of the RCD information cannot be trusted, then the use of the STIR RCD framework defined in <xref target="I-D.ietf-stir-passport-rcd"/> should be considered.</t>

<t>The jCard is intended to contain multiple information elements about the calling party.  A call and its corresponding single RCD-related Call-Info header field MUST only contain a single "jcard" token.</t>

<t>The fields like "fn", "photo", or "logo" if used with the use of "icon" calling name in From or P-Asserted-ID header field or purpose token, as described in the previous section, MUST either match or be avoided to allow the called party to clearly determine the intended calling name or icon.</t>

<t>An example of a Call-Info header field is:</t>

<figure><artwork><![CDATA[
Call-Info: <https://example.com/qbranch.json>;purpose=jcard
]]></artwork></figure>

<t>An example of the contents of a URL-linked jCard JSON file is shown as follows:</t>

<figure><artwork><![CDATA[
["vcard",
  [
    ["version",{},"text","4.0"],
    ["fn",{},"text","Q Branch"],
    ["org",{},"text","MI6;Q Branch Spy Gadgets"],
    ["photo",{},"uri","https://example.com/photos/q-256x256.png"],
    ["logo",{},"uri","https://example.com/logos/mi6-256x256.jpg"],
    ["logo",{},"uri","https://example.com/logos/mi6-64x64.jpg"]
  ]
]
]]></artwork></figure>

<t>An example SIP INVITE using the "data" URI scheme is as follows:</t>

<figure><artwork><![CDATA[
INVITE sip:alice@example.com SIP/2.0
Via: SIP/2.0/TLS pc33.atlanta.example.com;branch=z9hG4bKnashds8
To: Alice <sip:alice@example.com>
From: Bob <sip:12155551000@example.com;user=phone>;tag=1928301774>
Call-ID: a84b4c76e66710
Call-Info: <data:application/json,["vcard",[["version",{},"text",
"4.0"],["fn",{},"text","Q Branch"],["org",{},"text","MI6;Q Branch
Spy Gadgets"],["photo",{},"uri","https://example.com/photos/quart
ermaster-256x256.png"],["logo",{},"uri","https://example.com/log
os/mi6-256x256.jpg"],["logo",{},"uri","https://example.com/logos/
mi6-64x64.jpg"]]]\>;purpose=jcard;call-reason="Rendezvous for
Little Nellie"
CSeq: 314159 INVITE
Max-Forwards: 70
Date: Fri, 25 Sep 2015 19:12:25 GMT
Contact: <sip:12155551000@gateway.example.com>
Content-Type: application/sdp

v=0
o=UserA 2890844526 2890844526 IN IP4 pc33.atlanta.example.com
s=Session SDP
c=IN IP4 pc33.atlanta.example.com
t=0 0
m=audio 49172 RTP/AVP 0
a=rtpmap:0 PCMU/8000
]]></artwork></figure>

<t>An example SIP INVITE using the "cid" URI scheme is as follows:</t>

<figure><artwork><![CDATA[
INVITE sip:alice@example.com SIP/2.0
Via: SIP/2.0/TLS pc33.atlanta.example.com;branch=z9hG4bKnashds8
To: Alice <sip:alice@example.com>
From: Bob <sip:12155551000@example.com;user=phone>;tag=1928301774>
Call-ID: a84b4c76e66710
Call-Info: <cid:12155551000@example.com>;purpose=jcard;
  call-reason="Rendezvous for Little Nellie"
CSeq: 314159 INVITE
Max-Forwards: 70
Date: Fri, 25 Sep 2015 19:12:25 GMT
Contact: <sip:12155551000@gateway.example.com>
Content-Type: multipart/mixed; boundary=boundary1
Content-Length: ...

--boundary1

Content-Type: application/sdp

v=0
o=UserA 2890844526 2890844526 IN IP4 pc33.atlanta.example.com
s=Session SDP
c=IN IP4 pc33.atlanta.example.com
t=0 0
m=audio 49172 RTP/AVP 0
a=rtpmap:0 PCMU/8000

--boundary1

Content-Type: application/json
Content-ID: <12155551000@example.com>

["vcard",[["version",{},"text","4.0"],["fn",{},"text","Q Branch"],
["org",{},"text","MI6;Q Branch Spy Gadgets"],["photo",{},"uri","ht
tps://example.com/photos/quartermaster-256x256.png"],["logo",{},"u
ri","https://example.com/logos/mi6-256x256.jpg"],["logo",{},"uri",
"https://example.com/logos/mi6-64x64.jpg"]]]
]]></artwork></figure>

</section>
<section anchor="call-reason-call-info-parameter"><name>'call-reason' Call-Info Parameter</name>

<t>This specification defines a new parameter that extends the overall content of the RCD-related Call-Info header field.  As other parameters may be defined in the future, this parameter is intended to be separate and distinct from the other URI and 'purpose' tokens that may proceed these parameters.</t>

<t>This new parameter of the Call-Info header field is called 'call-reason'. The 'call-reason' parameter is intended to convey a short textual message suitable for display to an end user during call alerting. As a general guideline, this message SHOULD be no longer than 64 characters; displays that support this specification may be forced to truncate messages that cannot fit onto a screen. This message conveys the caller's intention in contacting the callee. It is an optional parameter, and the sender of a SIP request cannot guarantee that its display will be supported by the terminating endpoint. The manner in which this reason is set by the caller is outside the scope of this specification.</t>

<t>An alternative approach would have been to use the value of Subject header field <xref target="RFC3261"/> to convey the reason for the call. However, because the Subject header field has seen little historical use in SIP implementations and its specification describes its potential use in filtering, it seemed prudent to define a new means of carrying a call reason indication.</t>

<t>An example of a Call-Info header field value with the "call-reason" parameter follows:</t>

<figure><artwork><![CDATA[
Call-Info: <https://example.com/jbond.json>;purpose=jcard;
  call-reason="For your ears only"
]]></artwork></figure>

<t>In the case that there is only a 'call-reason' or 'verified' parameter or any future parameters that may be defined and no need for a purpose parameter with no associated URI, it is RECOMMENDED to include a null data URI, "data:" as the URI. That purpose parameter MUST be "jcard" defined in this document to avoid any conflicts with existing implementations and previously defined purpose parameters.  As an example:</t>

<figure><artwork><![CDATA[
Call-Info: <data:>;purpose=jcard;
  call-reason="For your ears only"
]]></artwork></figure>

</section>
<section anchor="verified-call-info-parameter"><name>'verified' Call-Info Parameter</name>

<t>This specification defines an additional new parameter, the 'verified' parameter, that extends and complements the content conveyed by the RCD-related Call-Info header field. This parameter is intended to be used to indicate to the recipient that the information contained in the Call-Info header field has been verified by verification procedures for claims defined in <xref target="I-D.ietf-stir-passport-rcd"/> Section 8. It should be considered separate and distinct and appear once for a given Call-Info header instance from the other URI and 'purpose' tokens that may proceed or come after this parameters.</t>

<t>There is a single valid value associated with the 'verified' parameter of 'true'. The value 'true' indicates to the recipient that the party that included the Call-Info header field performed a successful verification of the information represented. As a general principle of Call-Info header field information, the recipients ability to trust the 'verified' parameter is based on the trusted relationship of whom they are receiving the SIP request.</t>

<t>Example where the parameter verified="true" is used to represent that a verification procedure has been performed within a trust domain to indicate the 'icon' URL has been successfully verified:</t>

<figure><artwork><![CDATA[
Call-Info: <https://example.com/jbond.png>;purpose=icon;verified="true"
]]></artwork></figure>

<t>In addition to the use of the indication of successful verification of RCD information, an important usage of the 'verified' parameter is for the indication of verified "display-name" information, sometimes referred to as calling name or CNAM.</t>

<t>In the following example, a call was delivered via an NNI network relationship to a terminating provider with the following STIR RCD PASSporT.</t>

<figure><artwork><![CDATA[
Protected Header
{
  "alg":"ES256",
  "typ":"passport",
  "ppt":"rcd",
  "x5u":"https://cert.example.org/passport.pem"
}
Payload
{
  "dest":{"tn":["12025551001"]},
  "iat":1443208345,
  "orig":{"tn":"12025551000"},
  "rcd":{"nam":"James Bond","icn":"https://example.com/jbond.png"}
}
]]></artwork></figure>

<t>The terminating provider receives a SIP INVITE with an identity header containing the STIR RCD PASSporT is verified through a verification service. The provider then wants to deliver the call to an end device in the trusted and authenticated UNI network. The provider uses local policies to determine the information desired to present to the end device. The following example SIP INVITE could be used to represent the RCD information using two Call-Info header fields.  Because the verification of both the icon and calling name passed, a Call-Info header for the 'icon' is added with a verified="true" parameter, and the use of Call-Info with a null data URI is used, as discussed in the "call-reason" section above. This document defines the convention that when a Call-Info header field with a null data URI, "data:", a default purpose of "jcard" and adding a verified="true" indicates that the display-name information in either the From and/or P-Asserted-ID header field has been verified via RCD verification procedures.</t>

<t>Example SIP INVITE described above:</t>

<figure><artwork><![CDATA[
INVITE sip:qbranch@example.com SIP/2.0
Via: SIP/2.0/TLS pc33.atlanta.example.com;branch=z9hG4bKnashds8
To: "QBranch" <sip:qbranch@example.com>
From: "James Bond" <sip:12155551000@example.com;user=phone>;tag=1928>
Call-ID: a84b4c76e66710
Call-Info: <https://example.com/jbond.png>;purpose=icon;verified="true"
Call-Info: <data:>;purpose=jcard;verified="true"
CSeq: 314159 INVITE
Max-Forwards: 70
Date: Fri, 25 Sep 2025 19:12:25 GMT
Contact: <sip:12155551000@gateway.example.com>
Content-Type: application/sdp

v=0
o=UserA 2890844526 2890844526 IN IP4 pc33.atlanta.example.com
s=Session SDP
c=IN IP4 pc33.atlanta.example.com
t=0 0
m=audio 49172 RTP/AVP 0
a=rtpmap:0 PCMU/8000
]]></artwork></figure>

</section>
<section anchor="integrity-call-info-parameter"><name>'integrity' Call-Info Parameter</name>

<t>This specification defines an additional new parameter, the 'integrity' parameter, that extends and complements the integrity information conveyed specifically by the 'rcdi' claim in the RCD-related Call-Info header field. This parameter is intended to be used to indicate, for a URI represented in the Call-Info header field, the resource referenced by that URI has an associated integrity hash value. Section 6.1 of <xref target="I-D.ietf-stir-passport-rcd"/> describes the creation of the digest value including the hash algorithm indicator a '-' separator and the hash value as a string.  The JSON pointer object container described as the container of the 'rcdi' hashes is not necessary since each hash value should only correspond to a single URI.</t>

<t>Typically, this hash value, assuming the URI and the resource pointed to the URI don't change between the STIR RCD PASSporT and the Call-Info URI value, the integrity value can be directly used as the same corresponding string in both the 'rcdi' claim and the 'integrity' parameter string value.</t>

<t>Example STIR RCD PASSporT:</t>

<figure><artwork><![CDATA[
Protected Header
{
  "alg":"ES256",
  "typ":"passport",
  "ppt":"rcd",
  "x5u":"https://cert.example.org/passport.pem"
}
Payload
{
  "crn": "Rendezvous for Little Nellie",
  "dest": {"tn": ["12155551001"]},
  "iat": 1443208345,
  "orig": {"tn": "12025551000"},
  "rcd": {
    "nam": "Q Branch Spy Gadgets",
    "icn": "https://example.com/photos/q-256x256.png"
  },
  "rcdi": {
    "/icn": "sha256-RojgWwU6xUtI4q82+kHPyHm1JKbm7+663bMvzymhkl4"
  }
}
]]></artwork></figure>

<t>Example corresponding SIP INVITE with Call-Info information derived from RCD information above:</t>

<figure><artwork><![CDATA[
INVITE sip:qbranch@example.com SIP/2.0
Via: SIP/2.0/TLS pc33.atlanta.example.com;branch=z9hG4bKnashds8
To: "James Bond" <sip:12155551001@example.com;user=phone>
From: "Q Branch Spy Gadgets" <sip:12025551000@example.com;
  user=phone>;tag=1928>
Call-ID: a84b4c76e66710
Call-Info: <https://example.com/photos/q-256x256.png>;purpose=icon;
  verified="true";integrity="sha256-RojgWwU6xUtI4q82+kHPyHm1JKbm7+
  663bMvzymhkl4"
Call-Info: <data:>;purpose=jcard;call-reason="Rendezvous for Little 
  Nellie";verified="true"
Call-Info: <data:>;purpose=jcard;verified="true"
CSeq: 314159 INVITE
Max-Forwards: 70
Date: Fri, 25 Sep 2025 19:12:25 GMT
Contact: <sip:12155551000@gateway.example.com>
Content-Type: application/sdp

v=0
o=UserA 2890844526 2890844526 IN IP4 pc33.atlanta.example.com
s=Session SDP
c=IN IP4 pc33.atlanta.example.com
t=0 0
m=audio 49172 RTP/AVP 0
a=rtpmap:0 PCMU/8000
]]></artwork></figure>

</section>
<section anchor="usage-and-an-example-of-call-info-for-rcd"><name>Usage and an Example of Call-Info for RCD</name>

<t>The procedures for the usage of URIs and 'purpose' parameter tokens should generally follow the procedures defined in <xref target="RFC3261"/>. The following example provides both the STIR RCD PASSporT and the corresponding set of Call-Info header fields shows the use of multiple 'purpose' parameters to indicate a jCard and an icon and also a 'call-reason' parameter:</t>

<t>Example STIR RCD PASSporT:</t>

<figure><artwork><![CDATA[
   Protected Header
   {
      "alg":"ES256",
      "typ":"passport",
      "ppt":"rcd",
      "x5u":"https://cert.example.org/passport.pem"
   }
   Payload
   {
      "crn":"For your ears only",
      "dest":{"tn":["12025551001"]},
      "iat":1443208345,
      "orig":{"tn":"12025551000"},
      "rcd":{
        "jcl":"https://example.com/qbranch.json",
        "icn":"https://example.com/jbond.png"
      },
      "rcdi": {
        "/jcl": "sha256-yHm1JKbm7+663bMvzymhkl4RojgWwU6xUtI4q82+kHP"
        "/icn": "sha256-RojgWwU6xUtI4q82+kHPyHm1JKbm7+663bMvzymhkl4"
      }
   }
]]></artwork></figure>

<t>Example Call-Info header fields:</t>

<figure><artwork><![CDATA[
Call-Info: <data:>;purpose=jcard;verified="true"
Call-Info: <https://example.com/jbond.json>;purpose=jcard;verified=true;
  integrity="sha256-yHm1JKbm7+663bMvzymhkl4RojgWwU6xUtI4q82+kHP"
Call-Info: <https://example.com/jbond.png>;purpose=icon;call-reason="For your ears only";verified=true;
  integrity="sha256-RojgWwU6xUtI4q82+kHPyHm1JKbm7+663bMvzymhkl4"
]]></artwork></figure>

</section>
<section anchor="usage-of-jcard-and-property-specific-usage"><name>Usage of jCard and Property-Specific Usage</name>

<t>Beyond the definition of the specific properties or JSON arrays associated with each property, this specification defines a few rules above and beyond <xref target="RFC7095"/> that are specific to the use of jCard for Call-Info and RCD to ensure there is a minimum level of supported properties to which every implementation of this specification should adhere. This includes support for interpreting the value of these properties and the ability to render in some appropriate form the display capabilities of common telephone devices as well as applications, and also includes requirements specific to textual and graphics-capable displays.</t>

<section anchor="usage-of-uris-in-jcard"><name>Usage of URIs in jCard</name>

<t>When one or more URIs are used in a jCard, it is important to note that any URI-referenced data, with the exception of the top-level usage of "jcl" as a URI to the jCard itself (unless updated by any future extensions of this specification) MUST NOT contain any URI references. In other words, the jCard can have URI references as defined in the jCard specification and this document, but the content referenced by those URIs MUST NOT have any URIs, and therefore MUST be enforced by the client to not follow those URI references or not render that content to the user if any URI are present in that specific URI linked content. The purpose of this is to control the security and more specifically to align with the content-integrity mechanism defined in <xref target="I-D.ietf-stir-passport-rcd"/>. The authors do not believe there is a scenario for which deeper URI references would be required or even supported by the typical use of current jCard properties. However, because jCard is extensible, this rule is set to restrict further extension without the proper consideration of security and integrity properties of both Call-Info usage as well as the RCD and STIR signing of the data <xref target="I-D.ietf-stir-passport-rcd"/> <xref target="RFC8224"/>.</t>

</section>
<section anchor="multimedia-data"><name>Usage of Multimedia Data in jCard or with Icon</name>

<t>For the use of the 'purpose' token "icon" or for the cases where the jCard either incorporates URIs or includes digital images and sounds directly via Base64 encoding, we provide recommendations to facilitate the successful decoding and rendering of these images and media formats.</t>

<t>For images, such as for the "photo" and "logo" properties, the default image formats SHOULD be PNG <xref target="ISOPNG"/> or JPEG <xref target="ITUJPEG"/>, as these files are commonly used to support 24-bit RGB images.  Supporting older telephone devices that only support bitmap (BMP) images <xref target="RFC7903"/> with a lower bit range (e.g., 16 bit, 8 bit, or 1 bit), or grayscale, or 1-bit black and white color displays, should be considered optional or even not recommended because, at the time of writing, they are becoming increasingly rare (i.e., typically, devices either have color or color-aware graphical displays that support PNG or JPEG formats or they are exclusively textual displays).</t>

<t>In addition, vector images are increasingly popular to use for icons because they support scalable images without having to send multiple resolutions. The SVG format has gained wide support as of this writing as a common format for vector images. At a minimum, the SVG Tiny 1.2 specification <xref target="W3C-SVGTiny1.2"/> SHOULD be supported as an additional default format for devices.</t>

<t>For the cases where image files are referenced by URIs as file resources, this document defines a character string that SHOULD be concatenated onto the end of a file name, but before the file extension, that signals the height and width of the image to the end device for the convenience of determining the appropriate resolution to retrieve without the need to retrieve all the image files. It is also recommended that images have a square aspect ratio with equal height and width and with a power of two value for the number of pixels (e.g., 32x32, 128x128, 512x512). The format of the string should be "filename-HxW", where "filename" is a unique string representing the file, "H" represents the height in pixels, and "W" represents the width in pixels.</t>

<t>It is appropriate and useful to include multiple versions of images or sounds so that endpoints that cannot support all formats or resolutions can select the format they do support.  The convention that is RECOMMENDED is that files that refer to the same content should use the same filename portion.  If the image format has a specific resolution, the HxW portion of the filename should correspond to the pixel resolution. The file extension should reference the file type (e.g., filename.png, filename.svg, or filename.jpg) or (e.g., filename-32x32.png, filename-64x64.png, filename.svg, filename-32x32.jpg, or filename-64x64.jpg).</t>

<t>Because this is a complex and often debated topic that has evolved over the many years of advances in image coding and display technologies, we suggest relying on either future specifications or industry forum specifications that might correspond to supporting particular classes of devices to further define how URIs can reference appropriate image formats and files.</t>

<t>For audio files, the recommendation is to provide mp3, m4a or mp4, or wav files <xref target="RFC2361"/>, although the usage of sound (for example, a special ring tone for a particular caller) is not well defined in this specification. Future documents should consider both usage and potential security risks of playing sounds that are not specifically authorized by a device user.</t>

</section>
<section anchor="cardinality"><name>Cardinality</name>

<t>Property cardinalities are indicated, for convenience, using the following notation and follow the guidance of jCard <xref target="RFC7095"/> and vCard <xref target="RFC6350"/>, which is based on ABNF (see <xref section="3.6" sectionFormat="comma" target="RFC5234"/>):</t>

<figure><artwork><![CDATA[
  +-------------+--------------------------------------------------+
  | Cardinality | Meaning                                          |
  +-------------+--------------------------------------------------+
  |      1      | Exactly one instance per jCard MUST be present.  |
  |      *1     | Exactly one instance per jCard MAY be present.   |
  |      1*     | One or more instances per jCard MUST be present. |
  |      *      | One or more instances per jCard MAY be present.  |
  +-------------+--------------------------------------------------+
]]></artwork></figure>

</section>
<section anchor="identification-properties"><name>Identification Properties</name>
<t>The following properties, initially defined in <xref target="RFC6350"/>, hold the identity information of the entity associated with the jCard. This subset of properties selected for this document are relevant to telephone and messaging applications. jCard is an extensible object; therefore, there may be future specifications that extend the set of properties relevant to the applications that implement this specification.</t>

<section anchor="fn-property"><name>"fn" Property</name>

<t>The "fn" property provides a formatted text corresponding to the name of the object the jCard represents.  Reference: <xref section="6.2.1" sectionFormat="comma" target="RFC6350"/>.</t>

<t>Value type:  A single text value.</t>

<t>Cardinality:  1*</t>

<figure><artwork><![CDATA[
Example:
["fn", {}, "text", "Mr. John Q. Public\, Esq."]
]]></artwork></figure>

</section>
<section anchor="n-property"><name>"n" Property</name>

<t>The "n" property provides the components of the name of the object the jCard represents. Reference: <xref section="6.2.2" sectionFormat="comma" target="RFC6350"/>.</t>

<t>Value type:  A single structured text value. Each component can have multiple values.</t>

<t>Cardinality:  *1</t>

<figure><artwork><![CDATA[
Example:
["n", {}, "text", "Public;John;Quinlan;Mr.;Esq."]
["n", {}, "text", "Stevenson;John;Philip,Paul;Dr.;Jr.,M.D.,A.C.P."]
]]></artwork></figure>

</section>
<section anchor="nickname-property"><name>"nickname" Property</name>

<t>The "nickname" property provides the text corresponding to the nickname of the object the jCard represents. Reference: <xref section="6.2.3" sectionFormat="comma" target="RFC6350"/>.</t>

<t>Value type:  One or more text values separated by a COMMA character (U+002C).</t>

<t>Cardinality:  *</t>

<figure><artwork><![CDATA[
Example:
["nickname", {}, "text", "Robbie"]
["nickname", {}, "text", "Jim,Jimmie"]
["nickname", {}, "text", "TYPE=work:Boss"]
]]></artwork></figure>

</section>
<section anchor="photo-property"><name>"photo" Property</name>

<t>The "photo" property provides image or photograph information that annotates some aspect of the object the jCard represents. Reference: <xref section="6.2.4" sectionFormat="comma" target="RFC6350"/>.</t>

<t>In addition to the definition of jCard, and to promote interoperability and proper formatting and rendering of images, the photo SHOULD correspond to a square image with the size of 128x128, 256x256, 512x512, or 1024x1024 pixels.</t>

<t>Value type:  A single URI.</t>

<t>Cardinality:  *</t>

<figure><artwork><![CDATA[
Example:
["photo", {}, "uri", "http://www.example.com/jqpublic-256x256.png"]
]]></artwork></figure>

</section>
</section>
<section anchor="delivery-addressing-properties"><name>Delivery Addressing Properties</name>

<t>This property is concerned with information related to the delivery address of the jCard object.</t>

<section anchor="adr-property"><name>"adr" Property</name>

<t>The "adr" property provides the delivery address of the object the jCard represents. Reference: <xref section="6.3.1" sectionFormat="comma" target="RFC6350"/>.</t>

<t>Value type:  A single structured text value separated by the SEMICOLON character (U+003B).</t>

<t>Cardinality:  *</t>

<figure><artwork><![CDATA[
Example:
["adr", {"type":"work"}, "text",
  ["", "", "3100 Massachusetts Avenue NW", "Washington", "DC",
  "20008", "USA"]
]]></artwork></figure>

</section>
</section>
<section anchor="communications-properties"><name>Communications Properties</name>

<t>These properties describe how to communicate with the object the jCard represents.</t>

<section anchor="tel-property"><name>"tel" Property</name>

<t>The "tel" property provides the telephone number for the object the jCard represents. Reference: <xref section="6.4.1" sectionFormat="comma" target="RFC6350"/>.</t>

<t>Relative to the SIP From header field value, this information may provide an alternate telephone number or other related telephone numbers for other uses.</t>

<t>It is important to note that any of the potential instances of the "tel" property should not be considered part of the authentication or verification part of STIR <xref target="RFC8224"/> or required to match the "orig" claim in the PASSporT <xref target="RFC8225"/>.  These telephone numbers can be for contact, fax, or other purposes aligned with the general usage of jCard and vCard, but the potential confusion of the callee when provided with multiple telephone numbers versus the actual, verified telephone number should be considered from a general policy point of view.</t>

<t>Value type:  By default, it is a single free-form text value (for backward compatibility with vCard 3), but it SHOULD be reset to a URI value.  It is expected that the URI scheme will be "tel", as specified in <xref target="RFC3966"/>, but other schemes MAY be used.</t>

<t>Cardinality:  *</t>

<figure><artwork><![CDATA[
Example:
["tel", { "type": ["voice", "text", "cell"], "pref": "1" }, "uri",
  "tel:+1-202-555-1000"]
["tel", { "type": ["fax"] }, "uri", "tel:+1-202-555-1001"]
]]></artwork></figure>

</section>
<section anchor="email-property"><name>"email" Property</name>

<t>The "email" property provides the electronic mail address of the object the jCard represents. Reference: <xref section="6.4.2" sectionFormat="comma" target="RFC6350"/>.</t>

<t>Value type: A single text value.</t>

<t>Cardinality: *</t>

<figure><artwork><![CDATA[
Example:
["email", {"type":"work"}, "text", "jqpublic@xyz.example.com"]
["email", {"pref":"1"}, "text", "jane_doe@example.com"]
]]></artwork></figure>

</section>
<section anchor="lang-property"><name>"lang" Property</name>

<t>The "lang" property provides the language(s) that may be used for communicating with the object the jCard represents. Reference: <xref section="6.4.4" sectionFormat="comma" target="RFC6350"/>.</t>

<t>Value type:  A single language-tag value.</t>

<t>Cardinality:  *</t>

<figure><artwork><![CDATA[
Example:
["lang", {"type":"work", "pref":"1"}, "language-tag", "en"]
["lang", {"type":"work", "pref":"2"}, "language-tag", "fr"]
["lang", {"type":"home"}, "language-tag", "fr"]
]]></artwork></figure>

</section>
</section>
<section anchor="geographical-properties"><name>Geographical Properties</name>

<t>These properties provide geographical information associated with the object the jCard represents.</t>

<section anchor="tz-property"><name>"tz" Property</name>

<t>The "tz" property provides the time zone of the object the jCard represents. Reference: <xref section="6.5.1" sectionFormat="comma" target="RFC6350"/>.</t>

<t>Note: the reference for time-zone names is https://www.iana.org/time-zones.</t>

<t>Value type:  The default is a single text value.  It can also be
   reset to a single URI or a UTC-offset value.</t>

<t>Cardinality:  *</t>

<figure><artwork><![CDATA[
Example:
["tz", {}, "text", "Raleigh/North America"]
]]></artwork></figure>

</section>
<section anchor="geo-property"><name>"geo" Property</name>

<t>The "geo" property provides the global positioning of the object the jCard represents. Reference: <xref section="6.5.2" sectionFormat="comma" target="RFC6350"/>.</t>

<t>Value type:  A single URI.</t>

<t>Cardinality:  *</t>

<figure><artwork><![CDATA[
Example:
["geo", {}, "uri", "geo:37.386013,-122.082932"]
]]></artwork></figure>

</section>
</section>
<section anchor="organizational-properties"><name>Organizational Properties</name>

<t>These properties are concerned with information associated with characteristics of the organization or organizational units of the object that the jCard represents.</t>

<section anchor="title-property"><name>"title" Property</name>

<t>The "title" property has the intent of providing the position or job of the object the jCard represents. Reference <xref section="6.6.1" sectionFormat="comma" target="RFC6350"/>.</t>

<t>Value type:  A single text value.</t>

<t>Cardinality:  *</t>

<figure><artwork><![CDATA[
Example:
["title", {}, "text", "Research Scientist"]
]]></artwork></figure>

</section>
<section anchor="role-property"><name>"role" Property</name>

<t>The "role" property has the intent of providing the position or job of the object the jCard represents. Reference <xref section="6.6.2" sectionFormat="comma" target="RFC6350"/>.</t>

<t>Value type:  A single text value.</t>

<t>Cardinality:  *</t>

<figure><artwork><![CDATA[
Example:
["role", {}, "text", "Project Leader"]
]]></artwork></figure>

</section>
<section anchor="logo-property"><name>"logo" Property</name>

<t>The "logo" property has the intent of specifying a graphic image of a logo associated with the object the jCard represents. Reference <xref section="6.6.3" sectionFormat="comma" target="RFC6350"/>.</t>

<t>Value type:  A single URI.</t>

<t>Cardinality:  *</t>

<figure><artwork><![CDATA[
Example:
["logo", {}, "uri", "http://www.example.com/abccorp-512x512.jpg"]

["logo", {}, "uri", "data:image/jpeg;base64,MIICajCCAdOgAwIBAgIC
      AQEEBQAwdzELMAkGA1UEBhMCVVMxLDAqBgNVBAoTI05ldHNjYXBlIENvbW11bm
      ljYXRpb25zIENvcnBvcmF0aW9uMRwwGgYDVQQLExNJbmZvcm1hdGlvbiBTeXN0
      <...the remainder of base64-encoded data...>"]
]]></artwork></figure>

</section>
<section anchor="org-property"><name>"org" Property</name>

<t>The "org" property has the intent of specifying the organizational name and units of the object the jCard represents. Reference <xref section="6.6.4" sectionFormat="comma" target="RFC6350"/>.</t>

<t>Value type:  A single structured text value consisting of components separated by the SEMICOLON character (U+003B).</t>

<t>Cardinality:  *</t>

<figure><artwork><![CDATA[
Example:
["org", {}, "text", "ABC\, Inc.;North American Division;Marketing"]
]]></artwork></figure>

</section>
</section>
<section anchor="explanatory-properties"><name>Explanatory Properties</name>

<t>These properties provide additional information such as notes or revisions specific to the jCard.</t>

<section anchor="categories-property"><name>"categories" Property</name>

<t>The "categories" property specifies application category information about the object the jCard represents. Reference: <xref section="6.7.1" sectionFormat="comma" target="RFC6350"/>.</t>

<t>Value type:  One or more text values separated by a COMMA character
   (U+002C).</t>

<t>Cardinality:  *</t>

<figure><artwork><![CDATA[
Example:
["categories", {}, "text", "TRAVEL AGENT"]

["categories", {}, "text", "INTERNET,IETF,INDUSTRY"]
]]></artwork></figure>

</section>
<section anchor="note-property"><name>"note" Property</name>

<t>The "note" property specifies supplemental information or a comment about the object the jCard represents. Reference: <xref section="6.7.2" sectionFormat="comma" target="RFC6350"/>.</t>

<t>Value type:  A single text value.</t>

<t>Cardinality:  *</t>

<figure><artwork><![CDATA[
Example:
["note", {}, "text", "This fax number is operational 0800 to 1715
             EST\, Mon-Fri."]
]]></artwork></figure>

</section>
<section anchor="sound-property"><name>"sound" Property</name>

<t>The "sound" property specifies digital sound content information that annotates some aspect of the object the jCard represents. This property is often used to specify the proper pronunciation of the name property value of the jCard. Reference: <xref section="6.7.5" sectionFormat="comma" target="RFC6350"/>.</t>

<t>Value type:  A single URI.</t>

<t>Cardinality:  *</t>

<figure><artwork><![CDATA[
Example:
["sound", {}, "uri", "https://www.example.com/pub/logos/abccorp.mp3"]

["sound", {}, "uri", "data:audio/basic;base64,MIICajCCAdOgAwIBAgICBE
      AQEEBQAwdzELMAkGA1UEBhMCVVMxLDAqBgNVBAoTI05ldHNjYXBlIENvbW11bm
      ljYXRpb25zIENvcnBvcmF0aW9uMRwwGgYDVQQLExNJbmZvcm1hdGlvbiBTeXN0
      <...the remainder of base64-encoded data...>"]
]]></artwork></figure>

</section>
<section anchor="uid-property"><name>"uid" Property</name>

<t>The "uid" property specifies a globally unique identifier corresponding to the object the jCard represents. Reference: <xref section="6.7.6" sectionFormat="comma" target="RFC6350"/>.</t>

<t>Value type:  A single URI value.  It MAY also be reset to free-form text.</t>

<t>Cardinality: *1</t>

<figure><artwork><![CDATA[
Example:
["uid", {}, "uri", "urn:uuid:f81d4fae-7dec-11d0-a765-00a0c91e6bf6"]
]]></artwork></figure>

</section>
<section anchor="url-property"><name>"url" Property</name>

<t>The "url" property specifies a uniform resource locator associated with the object the jCard represents. Reference: <xref section="6.7.8" sectionFormat="comma" target="RFC6350"/>.</t>

<t>There are potential security and privacy implications of providing URLs with telephone calls. The end client receiving a jCard with a "url" property MUST only display the URL and not automatically follow the URL or provide automatic preview of the URL, and generally provide good practices in making it clear to the user it is their choice to follow the URL in a browser context consistent with all of the common browser security and privacy practices available on most consumer OS environments.</t>

<t>Value type:  A single uri value.</t>

<t>Cardinality:  *</t>

<figure><artwork><![CDATA[
Example:
["url", {}, "uri", "https://example.org/french-rest/chezchic.html"]
]]></artwork></figure>

</section>
<section anchor="version-property"><name>"version" Property</name>

<t>The "version" property MUST be included and is intended to specify the version of the vCard specification used to format this vCard. Reference: <xref section="6.7.9" sectionFormat="comma" target="RFC6350"/>.</t>

<t>Value type:  A single text value.</t>

<t>Cardinality:  1</t>

<figure><artwork><![CDATA[
Example:
["version", {}, "text", "4.0"]
]]></artwork></figure>

</section>
</section>
</section>
<section anchor="extension-of-jcard"><name>Extension of jCard</name>

<t>Part of the intent of using jCard is to leverage its extensibility to define new properties to relay new information related to a caller.  This capability is inherently supported as part of standard extensibility.  However, usage of those new properties should be published and registered following <xref section="3.6" sectionFormat="comma" target="RFC7095"/> or new specifications.</t>

</section>
<section anchor="IANA"><name>IANA Considerations</name>

<section anchor="sip-call-info-header-field-purpose-parameter-token"><name>SIP Call-Info Header Field 'purpose' Parameter Token</name>

<t>This document defines the token "jcard" as a new value for the 'purpose' parameter of the Call-Info header field in the "Header Field Parameters and Parameter Values" registry defined by <xref target="RFC3968"/>.</t>

<figure><artwork><![CDATA[
  +--------------+----------------+-------------------+------------+
  | Header Field | Parameter Name | Predefined Values | Reference  |
  +--------------+----------------+-------------------+------------+
  | Call-Info    | purpose        | Yes               | [this RFC] |
  +--------------+----------------+-------------------+------------+
]]></artwork></figure>

</section>
<section anchor="sip-call-info-header-field-call-reason-parameter"><name>SIP Call-Info Header Field 'call-reason' Parameter</name>

<t>This document defines the 'call-reason' generic parameter for use as a new parameter in the Call-Info header field in the "Header Field Parameters and Parameter Values" registry defined by <xref target="RFC3968"/>. The parameter's token is "call-reason", and it takes the value of a quoted string.</t>

<figure><artwork><![CDATA[
  +--------------+----------------+-------------------+------------+
  | Header Field | Parameter Name | Predefined Values | Reference  |
  +--------------+----------------+-------------------+------------+
  | Call-Info    | call-reason    | No                | [this RFC] |
  +--------------+----------------+-------------------+------------+
]]></artwork></figure>

</section>
<section anchor="sip-call-info-header-field-verified-parameter"><name>SIP Call-Info Header Field 'verified' Parameter</name>

<t>This document defines the 'verified' generic parameter for use as a new parameter in the Call-Info header field in the "Header Field Parameters and Parameter Values" registry defined by <xref target="RFC3968"/>. The parameter's token is "verified", and it takes the value of a quoted string that can only be "true".</t>

<figure><artwork><![CDATA[
  +--------------+----------------+-------------------+------------+
  | Header Field | Parameter Name | Predefined Values | Reference  |
  +--------------+----------------+-------------------+------------+
  | Call-Info    | verified       | Yes               | [this RFC] |
  +--------------+----------------+-------------------+------------+
]]></artwork></figure>

</section>
<section anchor="sip-call-info-header-field-integrity-parameter"><name>SIP Call-Info Header Field 'integrity' Parameter</name>

<t>This document defines the 'integrity' generic parameter for use as a new parameter in the Call-Info header field in the "Header Field Parameters and Parameter Values" registry defined by <xref target="RFC3968"/>. The parameter's token is "integrity", and it takes the value of a quoted string.</t>

<figure><artwork><![CDATA[
  +--------------+----------------+-------------------+------------+
  | Header Field | Parameter Name | Predefined Values | Reference  |
  +--------------+----------------+-------------------+------------+
  | Call-Info    | integrity      | No                | [this RFC] |
  +--------------+----------------+-------------------+------------+
]]></artwork></figure>

</section>
</section>
<section anchor="Security"><name>Security Considerations</name>

<t>Revealing information such as the name, location, and affiliation of a person necessarily entails certain privacy risks. The SIP Call-Info header field has no particular confidentiality requirement, as the information sent in SIP is in the clear anyway. Transport-level security can be used to hide information from eavesdroppers, and the same confidentiality mechanisms would protect any Call-Info or jCard information carried or referred to in SIP.</t>

<t>The security framework of signing and providing integrity to this data <xref target="I-D.ietf-stir-passport-rcd"/> should be followed, and the use of constraints and other certificate-based associations should be considered. This includes considerations for information about the calling party, which is generally constant, versus per-call data, which is more transient. This also includes the relationship that certificates with constraints presents to how they relate to each other and how that information is managed, protected, and associated with the correct call corresponding to a calling party.</t>

</section>


  </middle>

  <back>


    <references title='Normative References' anchor="sec-normative-references">



<reference anchor="RFC2392">
  <front>
    <title>Content-ID and Message-ID Uniform Resource Locators</title>
    <author fullname="E. Levinson" initials="E." surname="Levinson"/>
    <date month="August" year="1998"/>
    <abstract>
      <t>The Uniform Resource Locator (URL) schemes, "cid:" and "mid:" allow references to messages and the body parts of messages. For example, within a single multipart message, one HTML body part might include embedded references to other parts of the same message. [STANDARDS-TRACK]</t>
    </abstract>
  </front>
  <seriesInfo name="RFC" value="2392"/>
  <seriesInfo name="DOI" value="10.17487/RFC2392"/>
</reference>

<reference anchor="RFC3261">
  <front>
    <title>SIP: Session Initiation Protocol</title>
    <author fullname="J. Rosenberg" initials="J." surname="Rosenberg"/>
    <author fullname="H. Schulzrinne" initials="H." surname="Schulzrinne"/>
    <author fullname="G. Camarillo" initials="G." surname="Camarillo"/>
    <author fullname="A. Johnston" initials="A." surname="Johnston"/>
    <author fullname="J. Peterson" initials="J." surname="Peterson"/>
    <author fullname="R. Sparks" initials="R." surname="Sparks"/>
    <author fullname="M. Handley" initials="M." surname="Handley"/>
    <author fullname="E. Schooler" initials="E." surname="Schooler"/>
    <date month="June" year="2002"/>
    <abstract>
      <t>This document describes Session Initiation Protocol (SIP), an application-layer control (signaling) protocol for creating, modifying, and terminating sessions with one or more participants. These sessions include Internet telephone calls, multimedia distribution, and multimedia conferences. [STANDARDS-TRACK]</t>
    </abstract>
  </front>
  <seriesInfo name="RFC" value="3261"/>
  <seriesInfo name="DOI" value="10.17487/RFC3261"/>
</reference>

<reference anchor="RFC3966">
  <front>
    <title>The tel URI for Telephone Numbers</title>
    <author fullname="H. Schulzrinne" initials="H." surname="Schulzrinne"/>
    <date month="December" year="2004"/>
    <abstract>
      <t>This document specifies the URI (Uniform Resource Identifier) scheme "tel". The "tel" URI describes resources identified by telephone numbers. This document obsoletes RFC 2806. [STANDARDS-TRACK]</t>
    </abstract>
  </front>
  <seriesInfo name="RFC" value="3966"/>
  <seriesInfo name="DOI" value="10.17487/RFC3966"/>
</reference>

<reference anchor="RFC3968">
  <front>
    <title>The Internet Assigned Number Authority (IANA) Header Field Parameter Registry for the Session Initiation Protocol (SIP)</title>
    <author fullname="G. Camarillo" initials="G." surname="Camarillo"/>
    <date month="December" year="2004"/>
    <abstract>
      <t>This document creates an Internet Assigned Number Authority (IANA) registry for the Session Initiation Protocol (SIP) header field parameters and parameter values. It also lists the already existing parameters and parameter values to be used as the initial entries for this registry. This document specifies an Internet Best Current Practices for the Internet Community, and requests discussion and suggestions for improvements.</t>
    </abstract>
  </front>
  <seriesInfo name="BCP" value="98"/>
  <seriesInfo name="RFC" value="3968"/>
  <seriesInfo name="DOI" value="10.17487/RFC3968"/>
</reference>

<reference anchor="RFC5234">
  <front>
    <title>Augmented BNF for Syntax Specifications: ABNF</title>
    <author fullname="D. Crocker" initials="D." role="editor" surname="Crocker"/>
    <author fullname="P. Overell" initials="P." surname="Overell"/>
    <date month="January" year="2008"/>
    <abstract>
      <t>Internet technical specifications often need to define a formal syntax. Over the years, a modified version of Backus-Naur Form (BNF), called Augmented BNF (ABNF), has been popular among many Internet specifications. The current specification documents ABNF. It balances compactness and simplicity with reasonable representational power. The differences between standard BNF and ABNF involve naming rules, repetition, alternatives, order-independence, and value ranges. This specification also supplies additional rule definitions and encoding for a core lexical analyzer of the type common to several Internet specifications. [STANDARDS-TRACK]</t>
    </abstract>
  </front>
  <seriesInfo name="STD" value="68"/>
  <seriesInfo name="RFC" value="5234"/>
  <seriesInfo name="DOI" value="10.17487/RFC5234"/>
</reference>

<reference anchor="RFC6350">
  <front>
    <title>vCard Format Specification</title>
    <author fullname="S. Perreault" initials="S." surname="Perreault"/>
    <date month="August" year="2011"/>
    <abstract>
      <t>This document defines the vCard data format for representing and exchanging a variety of information about individuals and other entities (e.g., formatted and structured name and delivery addresses, email address, multiple telephone numbers, photograph, logo, audio clips, etc.). This document obsoletes RFCs 2425, 2426, and 4770, and updates RFC 2739. [STANDARDS-TRACK]</t>
    </abstract>
  </front>
  <seriesInfo name="RFC" value="6350"/>
  <seriesInfo name="DOI" value="10.17487/RFC6350"/>
</reference>

<reference anchor="RFC7095">
  <front>
    <title>jCard: The JSON Format for vCard</title>
    <author fullname="P. Kewisch" initials="P." surname="Kewisch"/>
    <date month="January" year="2014"/>
    <abstract>
      <t>This specification defines "jCard", a JSON format for vCard data. The vCard data format is a text format for representing and exchanging information about individuals and other entities, for example, telephone numbers, email addresses, structured names, and delivery addresses. JSON is a lightweight, text-based, language- independent data interchange format commonly used in Internet applications.</t>
    </abstract>
  </front>
  <seriesInfo name="RFC" value="7095"/>
  <seriesInfo name="DOI" value="10.17487/RFC7095"/>
</reference>

<reference anchor="RFC7519">
  <front>
    <title>JSON Web Token (JWT)</title>
    <author fullname="M. Jones" initials="M." surname="Jones"/>
    <author fullname="J. Bradley" initials="J." surname="Bradley"/>
    <author fullname="N. Sakimura" initials="N." surname="Sakimura"/>
    <date month="May" year="2015"/>
    <abstract>
      <t>JSON Web Token (JWT) is a compact, URL-safe means of representing claims to be transferred between two parties. The claims in a JWT are encoded as a JSON object that is used as the payload of a JSON Web Signature (JWS) structure or as the plaintext of a JSON Web Encryption (JWE) structure, enabling the claims to be digitally signed or integrity protected with a Message Authentication Code (MAC) and/or encrypted.</t>
    </abstract>
  </front>
  <seriesInfo name="RFC" value="7519"/>
  <seriesInfo name="DOI" value="10.17487/RFC7519"/>
</reference>

<reference anchor="RFC7852">
  <front>
    <title>Additional Data Related to an Emergency Call</title>
    <author fullname="R. Gellens" initials="R." surname="Gellens"/>
    <author fullname="B. Rosen" initials="B." surname="Rosen"/>
    <author fullname="H. Tschofenig" initials="H." surname="Tschofenig"/>
    <author fullname="R. Marshall" initials="R." surname="Marshall"/>
    <author fullname="J. Winterbottom" initials="J." surname="Winterbottom"/>
    <date month="July" year="2016"/>
    <abstract>
      <t>When an emergency call is sent to a Public Safety Answering Point (PSAP), the originating device, the access network provider to which the device is connected, and all service providers in the path of the call have information about the call, the caller, or the location, which is helpful for the PSAP to have in handling the emergency. This document describes data structures and mechanisms to convey such data to the PSAP. The intent is that every emergency call carry as much of the information described here as possible using the mechanisms described here.</t>
      <t>The mechanisms permit the data to be conveyed by reference (as an external resource) or by value (within the body of a SIP message or a location object). This follows the tradition of prior emergency services standardization work where data can be conveyed by value within the call signaling (i.e., in the body of the SIP message) or by reference.</t>
    </abstract>
  </front>
  <seriesInfo name="RFC" value="7852"/>
  <seriesInfo name="DOI" value="10.17487/RFC7852"/>
</reference>

<reference anchor="RFC7903">
  <front>
    <title>Windows Image Media Types</title>
    <author fullname="S. Leonard" initials="S." surname="Leonard"/>
    <date month="September" year="2016"/>
    <abstract>
      <t>This document registers media types for certain image formats promulgated in Microsoft Windows, namely image/wmf, image/x-wmf, image/emf, image/x-emf, and image/bmp for use with Windows Metafile, Enhanced Metafile, and Windows Bitmap formats. Originally designed for Microsoft Windows 2.0 and 3.0, these image files are intended to be portable between applications and devices, and they may contain both vector and raster graphics.</t>
    </abstract>
  </front>
  <seriesInfo name="RFC" value="7903"/>
  <seriesInfo name="DOI" value="10.17487/RFC7903"/>
</reference>

<reference anchor="RFC8224">
  <front>
    <title>Authenticated Identity Management in the Session Initiation Protocol (SIP)</title>
    <author fullname="J. Peterson" initials="J." surname="Peterson"/>
    <author fullname="C. Jennings" initials="C." surname="Jennings"/>
    <author fullname="E. Rescorla" initials="E." surname="Rescorla"/>
    <author fullname="C. Wendt" initials="C." surname="Wendt"/>
    <date month="February" year="2018"/>
    <abstract>
      <t>The baseline security mechanisms in the Session Initiation Protocol (SIP) are inadequate for cryptographically assuring the identity of the end users that originate SIP requests, especially in an interdomain context. This document defines a mechanism for securely identifying originators of SIP requests. It does so by defining a SIP header field for conveying a signature used for validating the identity and for conveying a reference to the credentials of the signer.</t>
      <t>This document obsoletes RFC 4474.</t>
    </abstract>
  </front>
  <seriesInfo name="RFC" value="8224"/>
  <seriesInfo name="DOI" value="10.17487/RFC8224"/>
</reference>

<reference anchor="RFC8225">
  <front>
    <title>PASSporT: Personal Assertion Token</title>
    <author fullname="C. Wendt" initials="C." surname="Wendt"/>
    <author fullname="J. Peterson" initials="J." surname="Peterson"/>
    <date month="February" year="2018"/>
    <abstract>
      <t>This document defines a method for creating and validating a token that cryptographically verifies an originating identity or, more generally, a URI or telephone number representing the originator of personal communications. The Personal Assertion Token, PASSporT, is cryptographically signed to protect the integrity of the identity of the originator and to verify the assertion of the identity information at the destination. The cryptographic signature is defined with the intention that it can confidently verify the originating persona even when the signature is sent to the destination party over an insecure channel. PASSporT is particularly useful for many personal-communications applications over IP networks and other multi-hop interconnection scenarios where the originating and destination parties may not have a direct trusted relationship.</t>
    </abstract>
  </front>
  <seriesInfo name="RFC" value="8225"/>
  <seriesInfo name="DOI" value="10.17487/RFC8225"/>
</reference>

<reference anchor="RFC8259">
  <front>
    <title>The JavaScript Object Notation (JSON) Data Interchange Format</title>
    <author fullname="T. Bray" initials="T." role="editor" surname="Bray"/>
    <date month="December" year="2017"/>
    <abstract>
      <t>JavaScript Object Notation (JSON) is a lightweight, text-based, language-independent data interchange format. It was derived from the ECMAScript Programming Language Standard. JSON defines a small set of formatting rules for the portable representation of structured data.</t>
      <t>This document removes inconsistencies with other specifications of JSON, repairs specification errors, and offers experience-based interoperability guidance.</t>
    </abstract>
  </front>
  <seriesInfo name="STD" value="90"/>
  <seriesInfo name="RFC" value="8259"/>
  <seriesInfo name="DOI" value="10.17487/RFC8259"/>
</reference>


<reference anchor="I-D.ietf-stir-passport-rcd">
   <front>
      <title>PASSporT Extension for Rich Call Data</title>
      <author fullname="Chris Wendt" initials="C." surname="Wendt">
         <organization>Somos Inc.</organization>
      </author>
      <author fullname="Jon Peterson" initials="J." surname="Peterson">
         <organization>Neustar Inc.</organization>
      </author>
      <date day="5" month="June" year="2023"/>
      <abstract>
	 <t>   This document extends PASSporT, a token for conveying
   cryptographically-signed call information about personal
   communications, to include rich meta-data about a call and caller
   that can be signed and integrity protected, transmitted, and
   subsequently rendered to the called party.  This framework is
   intended to include and extend caller and call specific information
   beyond human-readable display name comparable to the &quot;Caller ID&quot;
   function common on the telephone network and is also enhanced with a
   integrity mechanism that is designed to protect the authoring and
   transport of this information for different authoritative use-cases.

	 </t>
      </abstract>
   </front>
   <seriesInfo name="Internet-Draft" value="draft-ietf-stir-passport-rcd-26"/>
   
</reference>


<reference anchor="W3C-SVGTiny1.2" target="https://www.w3.org/TR/SVGMobile/">
  <front>
    <title>Scalable Vector Graphics (SVG) Tiny 1.2</title>
    <author >
      <organization>W3C</organization>
    </author>
    <date year="2008" month="December" day="22"/>
  </front>
</reference>
<reference anchor="ITUJPEG" >
  <front>
    <title>Information technology - Digital compression and coding of continuous-tone still images, JPEG File Interchange Format (JFIF) ITU-T Recommendation T.871, ISO/IEC 10918-5</title>
    <author >
      <organization>ITU-T</organization>
    </author>
    <date year="2013" month="May"/>
  </front>
</reference>
<reference anchor="ISOPNG" >
  <front>
    <title>Information technology -- Computer graphics and image processing -- Portable Network Graphics (PNG), Functional specification, ISO/IEC 15948:2004</title>
    <author >
      <organization>ISO/IEC</organization>
    </author>
    <date year="2004" month="March"/>
  </front>
</reference>


<reference anchor="RFC2119">
  <front>
    <title>Key words for use in RFCs to Indicate Requirement Levels</title>
    <author fullname="S. Bradner" initials="S." surname="Bradner"/>
    <date month="March" year="1997"/>
    <abstract>
      <t>In many standards track documents several words are used to signify the requirements in the specification. These words are often capitalized. This document defines these words as they should be interpreted in IETF documents. This document specifies an Internet Best Current Practices for the Internet Community, and requests discussion and suggestions for improvements.</t>
    </abstract>
  </front>
  <seriesInfo name="BCP" value="14"/>
  <seriesInfo name="RFC" value="2119"/>
  <seriesInfo name="DOI" value="10.17487/RFC2119"/>
</reference>

<reference anchor="RFC8174">
  <front>
    <title>Ambiguity of Uppercase vs Lowercase in RFC 2119 Key Words</title>
    <author fullname="B. Leiba" initials="B." surname="Leiba"/>
    <date month="May" year="2017"/>
    <abstract>
      <t>RFC 2119 specifies common key words that may be used in protocol specifications. This document aims to reduce the ambiguity by clarifying that only UPPERCASE usage of the key words have the defined special meanings.</t>
    </abstract>
  </front>
  <seriesInfo name="BCP" value="14"/>
  <seriesInfo name="RFC" value="8174"/>
  <seriesInfo name="DOI" value="10.17487/RFC8174"/>
</reference>




    </references>

    <references title='Informative References' anchor="sec-informative-references">



<reference anchor="RFC2361">
  <front>
    <title>WAVE and AVI Codec Registries</title>
    <author fullname="E. Fleischman" initials="E." surname="Fleischman"/>
    <date month="June" year="1998"/>
    <abstract>
      <t>The purpose of this paper is to establish a mechanism by which codecs registered within Microsoft's WAVE and AVI Registries may be referenced within the IANA Namespace by Internet applications. This memo provides information for the Internet community. It does not specify an Internet standard of any kind.</t>
    </abstract>
  </front>
  <seriesInfo name="RFC" value="2361"/>
  <seriesInfo name="DOI" value="10.17487/RFC2361"/>
</reference>

<reference anchor="RFC3325">
  <front>
    <title>Private Extensions to the Session Initiation Protocol (SIP) for Asserted Identity within Trusted Networks</title>
    <author fullname="C. Jennings" initials="C." surname="Jennings"/>
    <author fullname="J. Peterson" initials="J." surname="Peterson"/>
    <author fullname="M. Watson" initials="M." surname="Watson"/>
    <date month="November" year="2002"/>
  </front>
  <seriesInfo name="RFC" value="3325"/>
  <seriesInfo name="DOI" value="10.17487/RFC3325"/>
</reference>

<reference anchor="RFC7340">
  <front>
    <title>Secure Telephone Identity Problem Statement and Requirements</title>
    <author fullname="J. Peterson" initials="J." surname="Peterson"/>
    <author fullname="H. Schulzrinne" initials="H." surname="Schulzrinne"/>
    <author fullname="H. Tschofenig" initials="H." surname="Tschofenig"/>
    <date month="September" year="2014"/>
    <abstract>
      <t>Over the past decade, Voice over IP (VoIP) systems based on SIP have replaced many traditional telephony deployments. Interworking VoIP systems with the traditional telephone network has reduced the overall level of calling party number and Caller ID assurances by granting attackers new and inexpensive tools to impersonate or obscure calling party numbers when orchestrating bulk commercial calling schemes, hacking voicemail boxes, or even circumventing multi-factor authentication systems trusted by banks. Despite previous attempts to provide a secure assurance of the origin of SIP communications, we still lack effective standards for identifying the calling party in a VoIP session. This document examines the reasons why providing identity for telephone numbers on the Internet has proven so difficult and shows how changes in the last decade may provide us with new strategies for attaching a secure identity to SIP sessions. It also gives high-level requirements for a solution in this space.</t>
    </abstract>
  </front>
  <seriesInfo name="RFC" value="7340"/>
  <seriesInfo name="DOI" value="10.17487/RFC7340"/>
</reference>




    </references>


<?line 825?>

<section numbered="false" anchor="Acknowledgements"><name>Acknowledgements</name>

<t>We would like to thank David Hancock, Alec Fenichel, Paul Kyzivat, Yi Jing and other members of the SIPCORE and STIR working groups and ATIS/SIP Forum IPNNI for their helpful suggestions and comments during the creation of this document.</t>

</section>


  </back>

<!-- ##markdown-source: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-->

</rfc>

