Enabling Ipsec; Configuring Ip Security Proposal Table - AudioCodes Mediant 3000 User Manual

Media gateway & enterprise session border controller (e-sbc)
Hide thumbs Also See for Mediant 3000:
Table of Contents

Advertisement

User's Manual
Associations Table'' on page 188), which defines the IP peers to which IPSec security is
applied.
IPSec specifications summary:
Transport and Tunneling Mode
Encapsulation Security Payload (ESP) only
Encryption algorithms: AES, DES, and 3DES
Hash types: SHA1 and MD5

14.4.1 Enabling IPSec

To enable IKE and IPSec processing, you must enable the IPSec feature, as described
below.
To enable IPSec:
1.
Open the General Security Settings page (Configuration tab > VoIP menu >
Security > General Security Settings).
2.
Set the 'Enable IP Security' parameter to Enable.
3.
Click Submit, and then reset the device with a flash burn.

14.4.2 Configuring IP Security Proposal Table

The IP Security Proposal table is used to configure Internet Key Exchange (IKE) with up to
four proposal settings. Each proposal defines an encryption algorithm, an authentication
algorithm, and a Diffie-Hellman group identifier. The same set of proposals applies to both
Main and Quick mode.
If no proposals are defined, the following default settings are applied:
Proposal
Proposal 0
Proposal 1
Proposal 2
Proposal 3
Note:
parameter IPsecProposalTable (see ''Security Parameters'' on page 867).
To configure IP Security Proposals:
1.
Open the IP Security Proposal table (Configuration tab > VoIP menu > Security >
IPSec Proposal Table).
Version 7.0
Figure 14-10: Enabling IPSec
Table 14-7: Default IPSec/IKE Proposals
Encryption
3DES
3DES
3DES
3DES
You can also configure the IP Security Proposals table using the table ini file
Authentication
SHA1
MD5
SHA1
MD5
187
14. Security
DH Group
Group 2 (1024 bit)
Group 2 (1024 bit)
Group 1 (786 bit)
Group 1 (786 bit)
Mediant 3000

Advertisement

Table of Contents
loading

Table of Contents