
Security Features
101
the service type and port.
Default
0
Web UI
Account > Register > SIP Server Y > Transport
Parameter static.security.default_ssl_method
[3]
<y0000000000xx>.cfg
Description
It configures the TLS version to use for handshake negotiation between the phone and server (for
example, SIP registration server, provisioning server).
Permitted
Values
0-TLS 1.0
3-SSL V23 (automatic negotiation with the server. The phone starts with TLS 1.2 for negotiation.)
4-TLS 1.1
5-TLS 1.2
Default
3
Parameter static.security.server_ssl_method
[3]
<y0000000000xx>.cfg
Description
It configures the supported TLS version to use for handshake negotiation between the phone and
web browser.
Permitted
Values
0-TLS 1.0, TLS 1.1 and TLS 1.2
1-TLS 1.1 and TLS 1.2
2-TLS 1.2
Default
1
Supported
Devices
All phones except VP59
Parameter static.security.trust_certificates
[3]
<y0000000000xx>.cfg
Description It enables or disables the phone to only trust the server certificates in the Trusted Certificates list.
Permitted
Values
0-Disabled
1-Enabled, the phone will authenticate the server certificate based on the trusted certificates list. Only
when the authentication succeeds, will the phone trust the server.
Default
1
Web UI
Security > Trusted Certificates > Only Accept Trusted Certificates
Parameter static.security.ca_cert
[3]
<y0000000000xx>.cfg
Description
It configures the type of certificates in the Trusted Certificates list for the phone to authenticate for TLS
connection.
Permitted
Values
0-Default Certificates
1-Custom Certificates
2-All Certificates
Default
2
Web UI
Security > Trusted Certificates > CA Certificates
Parameter static.security.cn_validation
[3]
<y0000000000xx>.cfg
Description
It enables or disables the phone to mandatorily validate the CommonName or SubjectAltName of the
certificate sent by the server.
Содержание VP59 Teams
Страница 1: ......