User's Manual
672
Document #: LTRT-89729
Mediant 3000
Parameter
Description
RTP parameters:
If the remote SIP UA does not support SRTP, it uses RTP and
ignores the crypto lines.
In the opposite direction, if the device receives an SDP offer with
a single media (as shown above), it responds with SRTP
(RTP/SAVP) if the EnableMediaSecurity parameter is set to 1. If
SRTP is not supported (i.e., EnableMediaSecurity is set to 0), it
responds with RTP.
Notes:
Before configuring this parameter, set the EnableMediaSecurity
parameter to 1.
If this parameter is set to Preferable
[3]
and two 'm=' lines are
received in the SDP offer, the device prefers the SAVP (secure audio
video profile) regardless of the order in the SDP.
Option
[2]
Disable is applicable only to IP Profiles.
This parameter can also be configured per IP Profile, using the
IPProfile parameter (see 'Configuring IP Profiles' on page
Web: Master Key
Identifier (MKI) Size
EMS: Packet MKI Size
[SRTPTxPacketMKISize
]
Defines the size (in bytes) of the Master Key Identifier (MKI) in SRTP Tx
packets.
The range is 0 to 4. The default is 0 (i.e., new keys are generated without
MKI).
Notes:
For the GW/IP-to-IP application, the device only initiates the MKI size.
You can also configure MKI size in an IP Profile.
For the SBC application, the device can forward MKI size as is for
SRTP-to-SRTP flows or override the MKI size during negotiation,
using IP Profiles. This can be done on the inbound or outbound leg.
Web:Symmetric MKI
Negotiation
EMS: Enable Symmetric
MKI
[EnableSymmetricMKI]
Enables symmetric MKI negotiation.
[0]
Disable = (Default) The device includes the MKI in its 200 OK
response according to the SRTPTxPacketMKISize parameter (if set
to 0, then it is not included; if set to any other value, it is included with
this value).
[1]
Enable = The answer crypto line contains (or excludes) an MKI
value according to the selected crypto line in the offer. For example,
assume that the device receives an INVITE containing the following
two crypto lines in SDP:
a=crypto:2 AES_CM_128_HMAC_SHA1_80
inline:TAaxNnQt8/qLQMnDuG4vxYfWl6K7eBK/ufk04pR4|2^31
|1:1
a=crypto:3 AES_CM_128_HMAC_SHA1_80
inline:bnuYZnMxSfUiGitviWJZmzr7OF3AiRO0l5Vnh0kH|2^31
The first crypto line includes the MKI parameter "1:1". In the 200 OK
response, the device selects one of the crypto lines (i.e., '2' or '3').
Typically, it selects the first line that supports the crypto suite.
However, for SRTP-to-SRTP in SBC sessions, it can be determined
by the remote side on the outgoing leg. If the device selects crypto
line '2', it includes the MKI parameter in its answer SDP, for example:
a=crypto:2 AES_CM_128_HMAC_SHA1_80
inline:R1VyA1xV/qwBjkEklu4kSJyl3wCtYeZLq1/QFuxw|2^31
|1:1
If the device selects a crypto line that does not contain the MKI
parameter, then the MKI parameter is not included in the crypto line in
Summary of Contents for Mediant 3000
Page 2: ......
Page 26: ...User s Manual 26 Document LTRT 89729 Mediant 3000 Reader s Note...
Page 27: ...Part I Getting Started with Initial Connectivity...
Page 28: ......
Page 40: ...User s Manual 40 Document LTRT 89729 Mediant 3000 Reader s Notes...
Page 41: ...Part II Management Tools...
Page 42: ......
Page 44: ...User s Manual 44 Document LTRT 89729 Mediant 3000 Reader s Notes...
Page 80: ...User s Manual 80 Document LTRT 89729 Mediant 3000 Reader s Notes...
Page 98: ...User s Manual 98 Document LTRT 89729 Mediant 3000 Reader s Notes...
Page 103: ...Part III General System Settings...
Page 104: ......
Page 113: ...Part IV General VoIP Configuration...
Page 114: ......
Page 144: ...User s Manual 144 Document LTRT 89729 Mediant 3000 Reader s Notes...
Page 164: ...User s Manual 164 Document LTRT 89729 Mediant 3000 Reader s Notes...
Page 222: ...User s Manual 222 Document LTRT 89729 Mediant 3000 Reader s Notes...
Page 224: ...User s Manual 224 Document LTRT 89729 Mediant 3000 Reader s Notes...
Page 275: ...Part V Gateway and IP to IP Application...
Page 276: ......
Page 278: ...User s Manual 278 Document LTRT 89729 Mediant 3000 Reader s Notes...
Page 399: ...Part VI Session Border Controller Application...
Page 400: ......
Page 402: ...User s Manual 402 Document LTRT 89729 Mediant 3000 Reader s Notes...
Page 464: ...User s Manual 464 Document LTRT 89729 Mediant 3000 Reader s Notes...
Page 465: ...Part VII Stand Alone Survivability Application...
Page 466: ......
Page 474: ...User s Manual 474 Document LTRT 89729 Mediant 3000 Reader s Notes...
Page 494: ...User s Manual 494 Document LTRT 89729 Mediant 3000 Reader s Notes...
Page 497: ...Part VIII IP Media Capabilities...
Page 498: ......
Page 501: ...Part IX High Availability System...
Page 502: ......
Page 515: ...Part X Maintenance...
Page 516: ......
Page 522: ...User s Manual 522 Document LTRT 89729 Mediant 3000 Reader s Notes...
Page 524: ...User s Manual 524 Document LTRT 89729 Mediant 3000 Reader s Notes...
Page 552: ...User s Manual 552 Document LTRT 89729 Mediant 3000 Reader s Notes...
Page 562: ...User s Manual 562 Document LTRT 89729 Mediant 3000 Reader s Notes...
Page 565: ...Part XI Status Performance Monitoring and Reporting...
Page 566: ......
Page 578: ...User s Manual 578 Document LTRT 89729 Mediant 3000 Reader s Notes...
Page 609: ...Part XII Diagnostics...
Page 610: ......
Page 624: ...User s Manual 624 Document LTRT 89729 Mediant 3000 Reader s Notes...
Page 626: ...User s Manual 626 Document LTRT 89729 Mediant 3000 Reader s Notes...
Page 638: ...User s Manual 638 Document LTRT 89729 Mediant 3000 Reader s Notes...
Page 639: ...Part XIII Appendix...
Page 640: ......
Page 864: ...User s Manual 864 Document LTRT 89729 Mediant 3000 Reader s Notes...
Page 871: ...Version 6 6 871 Mediant 3000 User s Manual 55 Selected Technical Specifications Reader s Notes...