Cisco ASA 5505 Configuration Manual page 1034

Asa 5500 series
Hide thumbs Also See for ASA 5505:
Table of Contents

Advertisement

Configuring Cisco Intercompany Media Engine Proxy
Command
Step 14
hostname(config-pmap)# exit
Step 15
hostname(config)# service-policy policymap_name
global
Examples:
hostname(config)# service-policy ime-policy global
What to Do Next
Once you have enabled the TLS proxy for SIP inspection, if necessary, configure TLS within the
enterprise. See
(Optional) Configuring TLS within the Local Enterprise
This task is not required if TCP is allowable within the inside network.
TLS within the enterprise refers to the security status of the Cisco Intercompany Media Engine trunk as
seen by the adaptive security appliance.
If the transport security for the Cisco Intercompany Media Engine trunk changes on Cisco UCM, it must
Note
be changed on the adaptive security appliance as well. A mismatch will result in call failure. The
adaptive security appliance does not support SRTP with non-secure IME trunks. The adaptive security
appliance assumes SRTP is allowed with secure trunks. So 'SRTP Allowed' must be checked for IME
trunks if TLS is used. The adaptive security appliance supports SRTP fallback to RTP for secure IME
trunk calls.
Prerequisites
On the local Cisco UCM, download the Cisco UCM certificate. See the Cisco Unified Communications
Manager documentation for information. You will need this certificate when performing
procedure.
Procedure
To configure TLS within the local enterprise, perform the following steps on the local adaptive security
appliance:
Cisco ASA 5500 Series Configuration Guide using ASDM
47-28
(Optional) Configuring TLS within the Local Enterprise, page
Chapter 47
Configuring Cisco Intercompany Media Engine Proxy
Purpose
Exits from the policy map configuration mode.
Enables the service policy for SIP inspection for all
interfaces.
Where
is the name of the policy
policymap_name
map you created in
Step 7
See
Creating the Cisco Intercompany Media Engine
Proxy, page 47-18
for information about the
UC-IME proxy settings. See Cisco ASA 5500 Series
Configuration Guide using the CLI for information
about the no service-policy command.
of this task.
47-28.
Step 6
of this
OL-20339-01

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Asa 5510Asa 5540Asa 5520Asa 5550Asa 5580

Table of Contents