Security In The Avaya G860 Media Gateway; Ssl/Tls; Ssh; Avaya G860 Media Gateway Security Configuration - Avaya G860 Installing And Operating

Media gateway
Hide thumbs Also See for G860:
Table of Contents

Advertisement

12.8

Security in the Avaya G860 Media Gateway

12.8.1

SSL/TLS

SSL (the Secure Socket Layer), also known as TLS (Transport Layer Security), is the
method used to secure the Avaya G860 Media Gateway 's Media Gateway Boards
Web server and telnet. The SSL protocol provides confidentiality, integrity and
authenticity of the Web server.
Specifications for the SSL/TLS implementation in the Avaya G860 Media Gateway:
Supported transports: SSL 2.0, SSL 3.0, TLS 1.0
Supported ciphers: DES, RC4 compatible
Authentication: Username & Password, X.509 certificates
12.8.2

SSH

SSH (Secure Shell) provides secure encrypted communication between two distrusted
hosts over an insecure network. SSH is the method used to secure the Avaya G860
Media Gateway's System Controller Telnet and FTP Server.
Specifications for the SSH implementation:
SSH Protocol Version 2
Supported encryption algorithms: AES-128, BLOWFISH, 3DES
Supported authentication algorithms: SHA1, MD5
User/password authentication on each login
After you have configured the secure mode in the Avaya G860 Media Gateway, use
an SSH client for subsequent connects to the SC board. An example of an applicable
SSH client is PuTTY, found at:
12.8.3

Avaya G860 Media Gateway Security Configuration

Avaya G860 Media Gateway security configuration is performed via the EMS GUI,
including security associations with NMS and OSS servers, Call Agents etc.
12.8.3.1

Enable Secure Mode

When configuring the SC board for the first time, one of the settings to be configured
is Security. (Refer to 'Configuring System Controller Software for the First Time' on
page 73.) If you did not enable the Security option at that time, you can do so using
the procedure below.
To enable Secure Mode, take these 5 steps:
1.
Connect to both SC boards via the Secure Shell (SSH).
2.
Stop software on both SC boards using the command, tools tg dn.
3.
On the Primary SC board:
12. Configuring & Operating the Media Gateway
http://www.putty.nl/download.html.
Issue 1 October 2007 111

Advertisement

Table of Contents
loading

Table of Contents