CHAPTER 19 Coders and Profiles
Mediant 4000 SBC | User's Manual
Parameter
Description
■
[1]
Enable
= If the session expires causing a session
refresh through a re-INVITE, the device or server
generates a new key and the device resets the ROC
index (and other SRTP fields) as done by the server,
resulting in a synchronized SRTP.
Note:
■
If this feature is disabled and the server resets the ROC
upon a re-key generation, one-way voice may occur.
■
The corresponding global parameter is
ResetSRTPStateUponRekey.
'Generate SRTP Keys Mode'
generate-srtp-keys
[IpProfile_GenerateSRTPKeys]
Enables the device to generate a new SRTP key upon
receipt of a re-INVITE with the SIP entity associated with
the IP Profile.
■
[0]
Only If Required
= (Default) The device generates
an SRTP key only if necessary.
■
[1]
Always
= The device always generates a new
SRTP key.
'SBC Remove Crypto Lifetime
in SDP'
sbc-sdp-remove-crypto-
lifetime
[IpProfile_
SBCRemoveCryptoLifetimeInS
DP]
Defines the handling of the lifetime field in the 'a=crypto'
attribute of the SDP for the SIP entity associated with the
IP Profile. The SDP field defines the lifetime of the master
key as measured in maximum number of SRTP or SRTCP
packets using the master key.
■
[0]
No
= (Default) The device retains the lifetime field (if
present) in the SDP.
■
[1]
Yes
= The device removes the lifetime field from the
'a=crypto' attribute.
Note:
If you configure the parameter to Yes, the following
IP Profile parameters must be configured as follows:
■
IpProfile_EnableSymmetricMKI configured to Enable
[1].
■
IpProfile_MKISize configured to 0.
■
IpProfile_SBCEnforceMKISize configured to Enforce
[1].
'SBC Remove Unknown Crypto'
sbc-remove-unknown-
crypto
[IpProfile_
SBCRemoveUnKnownCrypto]
Defines whether the device keeps or removes unknown
cryptographic suites (encryption and authentication
algorithms) that are present in the SDP 'a=crypto' attribute
in the incoming SIP message, before forwarding the
message to the SIP entity associated with this IP Profile.
■
[0]
No
= (Default) The device keeps all unknown
cryptographic suites that are in the SDP’s 'a=crypto'
attribute.
■
[1]
Yes
= The device removes all unknown
cryptographic suites that are in the SDP’s 'a=crypto'
attribute.
Note:
■
The feature is applicable only to SRTP-to-SRTP calls
and calls that do not require transcoding.
- 399 -
Summary of Contents for Mediant 4000 SBC
Page 1: ...User s Manual AudioCodes Series of Session Border Controllers SBC Mediant 4000 SBC Version 7 2...
Page 40: ...Part I Getting Started with Initial Connectivity...
Page 48: ...Part II Management Tools...
Page 113: ...Part III General System Settings...
Page 118: ...Part IV General VoIP Configuration...
Page 525: ...Part V Session Border Controller Application...
Page 654: ...Part VI Cloud Resilience Package...
Page 663: ...Part VII High Availability System...
Page 685: ...Part VIII Maintenance...
Page 759: ...Part IX Status Performance Monitoring and Reporting...
Page 844: ...Part X Diagnostics...
Page 888: ...Part XI Appendix...