268
Dialogic
®
1000 and 2000 Media Gateway Series User’s Guide
Data Security
•
Verify TLS Peer Certificate trust: No
Example 2:
Assume a company has five sites: one in Indiana, one in Illinois, one in California, one in New
York, and one in Washington. Each of these sites uses a local telephone company. People at
different sites frequently call each other. They have decided to use VoIP service with one Media
Gateway at each site. They also use one media server. A CA signed certificate, which will expire in
1 year, is used. There is no convenient SNTP server. Each of the five Media Gateways can be
configured as follows:
•
SNTP Server IP Address: Leave blank
•
TLS Inactivity Timer: Use default value
•
TLS Server port: Use default value
•
SIPS URI Scheme Enabled: Yes
•
Cipher List: Use default value
•
Verify TLS Peer Certificate date: No
•
Verify TLS Peer Certificate trust: No
7.4
Secure Voice Data
This section includes the following information about secure voice data:
•
•
Once a Voice over IP (VoIP) call is established, voice data is transported in the form of RTP
packets. The voice data can be easily extracted from RTP packets and replayed using commercially
available software. SRTP adds security by encrypting voice data and authenticating packets.
The two parties involved in a conversation must be “compatible” in the sense that each party
understands the other party's cipher requirements and supports them. Configuration provides the
following benefits:
•
Support for more devices - For example, Media Gateway can talk to a device that supports
either SHA1 32 bits authentication tag or SHA1 80 bits authentication tag.
•
Turn security on or off completely. This allows the Media Gateway to talk to a device that
doesn't support security at all.
7.4.1
Configuration
Secure RTP (SRTP) includes the following configuration parameters:
•
SRTP Preference - Values for this parameter are SRTP_Only, RTP_Only, or SRTP_Preferred.
A single setting applies to all channels. If SRTP_Only is specified, the gateway will only
request secure audio and will reject all requests for non-secure audio. If SRTP_Preferred is
specified, the gateway will request both secure audio and non-secure audio, with a preference
Summary of Contents for 1000Series
Page 1: ...Dialogic 1000 and 2000 Media Gateway Series User s Guide December 2014 64 0346 13...
Page 10: ...10 Dialogic 1000 and 2000 Media Gateway Series User s Guide Contents...
Page 14: ...14 Dialogic 1000 and 2000 Media Gateway Series User s Guide Contents...
Page 24: ...24 Dialogic 1000 and 2000 Media Gateway Series User s Guide About This Publication...
Page 36: ...36 Dialogic 1000 and 2000 Media Gateway Series User s Guide Overview...
Page 44: ...44 Dialogic 1000 and 2000 Media Gateway Series User s Guide Media Gateway Configuration...
Page 190: ...190 Dialogic 1000 and 2000 Media Gateway Series User s Guide Parameter Reference...
Page 200: ...200 Dialogic 1000 and 2000 Media Gateway Series User s Guide Call Progress Tones...
Page 272: ...272 Dialogic 1000 and 2000 Media Gateway Series User s Guide Data Security...
Page 326: ...326 Dialogic 1000 and 2000 Media Gateway Series User s Guide...