AudioCodes Mediant 4000 SBC User Manual page 106

Session border controller
Hide thumbs Also See for Mediant 4000 SBC:
Table of Contents

Advertisement

Parameter
Cipher Server
ciphers-server
[TLSContexts_ServerCipherSt
ring]
Cipher Client
ciphers-client
[TLSContexts_ClientCipherStr
ing]
Strict Certificate Extension
Validation
require-strict-cert
[TLSContexts_RequireStrictC
ert]
DH Key Size
dh-key-size
[TLSContexts_DHKeySize]
OCSP
OCSP Server
ocsp-server
[TLSContexts_OcspEnable]
Primary OCSP Server
ocsp-server-primary
[TLSContexts_OcspServerPri
mary]
Secondary OCSP Server
ocsp-server-secondary
[TLSContexts_OcspServerSe
condary]
OCSP Port
ocsp-port
[TLSContexts_OcspServerPor
t]
OCSP Default Response
ocsp-default-response
[TLSContexts_OcspDefaultRe
sponse]
User's Manual
and 5764). For more information on DTLS, see SRTP using DTLS
Protocol on page 207.
Defines the supported cipher suite for the TLS server (in OpenSSL
cipher list format).
The default is AES:RC4. For valid values, visit the OpenSSL website
at https://www.openssl.org/docs/man1.0.2/apps/ciphers.html.
Defines the supported cipher suite for TLS clients.
The default is DEFAULT.
For possible values and additional details, visit the OpenSSL
website at
https://www.openssl.org/docs/man1.0.2/apps/ciphers.html.
Enables the validation of the extensions (keyUsage and
extentedKeyUsage) of peer certificates. The validation ensures that
the signing CA is authorized to sign certificates and that the end-
entity certificate is authorized to negotiate a secure TLS connection.
[0] Disable (default)
[1] Enable
Defines the Diffie-Hellman (DH) key size (in bits). DH is an algorithm
used chiefly for exchanging cryptography keys used in symmetric
encryption algorithms such as AES.
[1024] 1024 (default)
[2048] 2048
Enables or disables certificate checking using OCSP.
[0] Disable (default)
[1] Enable
Defines the IP address (in dotted-decimal notation) of the primary
OCSP server.
The default is 0.0.0.0.
Defines the IP address (in dotted-decimal notation) of the secondary
OCSP server (optional).
The default is 0.0.0.0.
Defines the OCSP server's TCP port number.
The default port is 2560.
Determines whether the device allows or rejects peer certificates if it
cannot connect to the OCSP server.
[0] Reject (default)
[1] Allow
106
Mediant 4000 SBC
Description
Document #: LTRT-40203

Advertisement

Table of Contents
loading

This manual is also suitable for:

Mediant 4000b sbc

Table of Contents