Media Application Server security
125
The license key is another critical part of the security of the Ad Hoc Audio
Conferencing service. The key is a byte string that is given to the service
provider to use when configuring the system, and is node-locked to a
specific server. The key contains the two MAC addresses of the server as
well as the number of allowable G.711 and G.729 participants.
Meet Me Audio Conferencing security
The MAS Meet Me Audio Conferencing service offers the security protection
of the Microsoft Windows 2000 Server operating system. The port range
used by the software is configurable. However, by default, the Meet Me
Audio Conferencing service uses port 5060 for SIP messaging and 53500
and up (in increments of four for each participant media type) for RTP/RTCP.
The MAS is configured to accept SIP INVITEs from a particular Session
Manager. This configuration is performed at anytime (during or after
installation).
Note: The user cannot do the configuration, only the system
administrator can perform this.
The Meet Me Audio Conferencing service platform can be configured to
accept signaling only from specific IP addresses and ports associated with
those IP addresses. The figure below indicates how to configure trusted
nodes. The only trusted nodes configured should be the Session Manager
service addresses.
Figure 49
Configuring the acceptable sources of SIP INVITEs
The SIP Application Servers field contains the IP addresses of Session
Managers from which the Meet Me Audio Conferencing service accept
SIP signaling messages. SIP messages from other endpoints are issued
Nortel Media Application Server
Media Application Server Planning and Engineering
NN42020-201
01.04
Standard
4.0
27 July 2007
Copyright © 2007, Nortel Networks
.