User`s manual

SIP User's Manual 5. Web Management
Version 5.0 175 December 2006
Table 5-50: Security Settings, General Security Settings Parameters
(continues on pages 174 to 175)
Parameter Description
Local RADIUS Password Cache
Mode
[RadiusLocalCacheMode]
Defines the gateway’s mode of operation regarding the timer (configured by
the parameter RadiusLocalCacheTimeout) that determines the validity of the
username and password (verified by the RADIUS server).
Absolute Expiry Timer
[0] = when you access a Web screen, the timeout
doesn’t reset but rather continues decreasing.
Reset Timer Upon Access [1] = upon each access to a Web screen, the
timeout always resets (reverts to the initial value configured by
RadiusLocalCacheTimeout).
Local RADIUS Password Cache
Timeout
[RadiusLocalCacheTimeout]
Defines the time (in seconds) the locally stored username and password
(verified by the RADIUS server) are valid. When this time expires, the
username and password becomes invalid and a must re-verified with the
RADIUS server.
The valid range is 1 to 0xFFFFFF. -1 = Never expires. 0 = Each request
requires RADIUS authentication.
The default value is 300 (5 minutes).
RADIUS VSA Vendor ID
[RadiusVSAVendorID]
Defines the vendor ID the gateway accepts when parsing a RADIUS
response packet.
The valid range is 0 to 0xFFFFFFFF. The default value is 5003.
RADIUS VSA Access Level
Attribute
[RadiusVSAAccessAttribute]
Defines the code that indicates the access level attribute in the Vendor
Specific Attributes (VSA) section of the received RADIUS packet.
The valid range is 0 to 255. The default value is 35.
EtherDiscover Settings
EtherDiscover Operation
Mode
N/A.
SRTP Settings
Enable Media Security
[EnableMediaSecurity]
Enables or disables the Secure Real-Time Transport Protocol (SRTP).
Disable (TGCP)
[0] = SRTP is disabled (default).
Enable (SRTP)
[1] = SRTP is enabled.
Note: Use of SRTP reduces the number of available channels.
MP-124 18 available channels
MP-118 6 available channels
MP-114 3 available channels
MP-112 no reduction.
Media Security Behavior
[MediaSecurityBehaviour]
Determines the gateway’s mode of operation when SRTP is used
(EnableMediaSecurity = 1).
Prefer
[0] = The gateway initiates encrypted calls. If negotiation of the cipher
suite fails, an unencrypted call is established. Incoming calls that don’t
include encryption information are accepted.
Must
[1] = The gateway initiates encrypted calls. If negotiation of the cipher
suite fails, the call is terminated. Incoming calls that don’t include encryption
information are rejected (default).
IPSec Settings
Enable IP Security
[EnableIPSec]
Enables / disables the Secure Internet Protocol (IPSec) on the gateway.
Disable [0] = IPSec is disabled (default).
Enable
[1] = IPSec is enabled.
5.6.5.6 Configuring the IPSec Table
Use the IPSec Table screen to configure the IPSec parameters. For detailed information on
IPSec and IKE, refer to Section 12.1 on page 279.