Technical data

Features
EN4442EN00EN_0001
© 2007 Siemens AG
Siemens
27
4.14.2 Access to SNMP
The acces to SNMP is restricted via read and write Community strings. These Community
strings can be configured with the WBM > Maintenance > SNMP > Communities.
4.14.3 Security in CorNetTC Registration
The log-on between the IP phones and HiPath HG 3500 is secured via SHA1. The payload and
signaling connections are not encrypted.
4.14.4 H.235 Security
When this feature gets activated all messages between the HG 3500 and the IP phones are
authenticated. Authenticated messages will contain a Crypto Token element. As Crypto Token
handling requires precise time and therefore the local system time is distributed cyclic to the IP
endpoints.
Generation
To activate the H.235 security feature on the board, you set the security flag using the AMO
ZANDE. This activates H.235 data in the AMO CGWB on the board.
Once you have activated the H.235 security feature with the AMO ZANDE, you must reboot the
board to activate the changes.
With the parameter GLOBID1 and GLOBID2 you can administer the gateway ID.
CHANGE-ZANDE:ALLDATA,H235SEC=YES;
CHANGE-CGWB:MTYPE=CGW,LTU=<ltu no>,SLOT=<slot no>,
TYPE=H235DATA,SECURITY=<parameter>,GLOBID1=<string>,GLOBID2=<string>,TIMEWN
DW=<number>,GLOBPW=<password_of_the_gw>;
4.15 Reliability
4.15.1 Duplex System Support
The HG 3500 IP line gateway fully supports duplex HiPath 4000 systems.
4.15.2 Survivability Options
4.15.2.1 Line Gateway Redundancy
There are two ways to provide redundancy and increase availability for IP clients: