Specifications

1-14
Cisco Unified IP Phone 7906G and 7911G for Cisco Unified Communications Manager 8.0
OL-21033-01
Chapter 1 An Overview of the Cisco Unified IP Phone
Understanding Security Features for Cisco Unified IP Phones
In an authenticated call, all devices participating in the establishment of the call are trusted devices, and
authenticated by Cisco Unified Communications Manager. When a call in progress is authenticated
end-to-end, the call progress icon to the right of the call duration timer in the phone LCD screen changes
to the following icon:
In an encrypted call, all devices participating in the establishment of the call are trusted devices, and
authenticated by the Cisco Unified Communications Manager. In addition, call signaling and media
streams are encrypted. An encrypted call offers a high level of security, providing integrity and privacy
to the call. When a call in progress is being encrypted, the call progress icon to the right of the call
duration timer in the phone LCD screen changes to the following icon:
Note If the call is routed through a non-IP call leg, for example, PSTN, the call will be nonsecure even though
it is encrypted within the IP network and has a lock icon associated with it.
In a protected call, a security tone plays at the beginning of a call to indicate that the other connected
phone is also receiving and transmitting encrypted audio and video (if video is involved). If your call is
connected to a non-protected phone, the security tone does not play.
Note Protected calling is supported for connections between two phones only. Some features, such as
conference calling, shared lines, Extension Mobility, and Join Across Lines are not available when
protected calling is configured. Protected calls are not authenticated.
Related Topic
Understanding Security Features for Cisco Unified IP Phones, page 1-10
Supporting 802.1X Authentication on Cisco Unified IP Phones, page 1-16
Security Restrictions, page 1-18
Establishing and Identifying Secure Conference Calls
You can initiate a secure conference call and monitor the security level of participants. A secure
conference call is established using this process:
1. A user initiates the conference from a secure phone (encrypted or authenticated security mode).
2. Cisco Unified Communications Manager assigns a secure conference bridge to the call.
3. As participants are added, Cisco Unified Communications Manager verifies the security mode of
each phone (encrypted or authenticated) and maintains the secure level for the conference.
4. The phone displays the security level of the conference call. A secure conference displays
(
encrypted) or (authenticated) icon to the right of “Conference” on the phone screen. If
icon displays, the conference is not secure.
Note There are interactions, restrictions, and limitations that affect the security level of the conference call
depending on the security mode of the participant’s phones and the availability of secure conference
bridges. See Table 1-5 and Table 1-6 for information about these interactions.