The disclosed embodiments provide for methods and apparatus for encrypting
media using a current media encryption key (MEK), requesting a new MEK,
and receiving the new MEK. The method further provides for transitioning
from the current MEK to the new MEK and continuing to encrypt the media
using the new MEK. In another embodiment, the method provides for
decrypting media during an ongoing media communication session, the
method provides for receiving encrypted media, and decrypting the
encrypted media using a current MEK. The method further provides for
requesting a new MEK before the current MEK expires based on its
associated expiration time, receiving the new MEK, and continuing to
decrypt the encrypted media based on a received MEK indication flag (MIF)
that indicates whether the encrypted media is encrypted using the current
MEK or the new MEK.