User's Manual

Avaya Branch Gateway Manager 10.0 Page 783
15-601011 Issue 29r (Friday, November 02, 2012)B5800 Branch Gateway
Telephone Features: Voice over IP Features
Avaya Branch Gateway Support
SRTP is supported on Avaya Branch Gateway systems fitted with IP500 VCM, IP500 VCM V2 and or IP500 Combination
cards. SRTP is only supported when also using TLS or VPN tunnels for connections between systems. This must be end to
end TLS or VPN if the VoIP calls transit multiple systems.
The Avaya Branch Gateway supports encryption, authentication and replay attack protection. It does not support
rekeying.
Trunk Support
SRTP is supported on SIP trunks. SRTP is not supported on H.323 IP trunks.
Phone Support
The following Avaya phones can use SRTP on a Avaya Branch Gateway system: 1100 Series, 1200 Series, 1600 Series,
3600 Series, 5600 Series and 9600 Series.
SRTP may also be supported by third-party SIP and H.323 phones. For all SIP phones, SRTP is only supported if using
TLS for connection to the Avaya Branch Gateway system.
Enabling SRTP for all Line and Extensions
By default SRTP is not used for any lines or extensions. However each line and extension is defaulted to match the
system default, therefore changing the system setting will affect all lines and extensions.
The system Media Security for VoIP setting (System | Telephony | Telephony ) is enabled when selected. All IP
lines and extensions that are still set to their default Media Security setting will match the current system setting.
Enabling SRTP for a Line or Extension
The Media Security setting for each IP line and extension is found on its VoIP Settings tab. The default value of this
setting matches the System Default (see above). Alternatively the setting can be specifically set to On or Off for the
particular line or extension.
Adjusting the Line/Extension SRTP Settings
The defaults for SRTP are to apply encryption to the RTP stream and authentication to the RTCP stream. However, these
can be changed for each line and extension.
When SRTP is enabled on a line or extension, the Advanced button on that line or extension's VoIP Settings tab can be
used to display the SRTP settings it is using. This allows you to select which streams are encrypted, which are
authenticated, and the encryption methods (Crypto Suites) that can be used.
159
262