Cisco 7960G Administration Manual page 36

For cisco callmanager 4.0
Hide thumbs Also See for 7960G:
Table of Contents

Advertisement

Understanding Security Features for Cisco IP Phones
Note
Cisco IP Phone Administration Guide for Cisco CallManager 4.0, Cisco IP Phones 7960G/7940G
1-12
File authentication—Validates digitally-signed files that the phone
downloads. The phone validates the signature to make sure that file tampering
did not occur after the file creation. Files that fail authentication are not
written to Flash memory on the phone.
Signaling Authentication—Uses the TLS protocol to validate that no
tampering has occurred to signaling packets during transmission.
CAPF (Certificate Authority Proxy Function)—Communicates with the
Certificate Authority (CA) server on behalf of the phone. The CAPF
implements parts of the certificate generation procedure that are too
processing-intensive for the phone, and it interacts with the phone for key
generation and certificate installation. The CAPF server can be configured to
request certificates from customer-specified certificate authorities on behalf
of the phone, or it can be configured to generate certificates locally. After you
configure a CAPF server, the phone generates a public/private key pair,
encrypts, signs, and decrypts some messages, and stores, retrieves, and
deletes the certificate and the key pair. The CAPF server performs the other
necessary tasks that are associated with the certificates, including installing
and upgrading locally significant certificates on the phone.
Phone hardening—Additional security options as follows. You control these
options form Cisco CallManager Administration.
Disabling PC port
Disabling Gratuitous ARP
Disabling PC Voice VLAN access
Disabling access to the Setting menus
Disabling access to web pages for a phone
You can view current settings for the PC Port Disabled, GARP Enabled,
and Voice VLAN enabled options by looking at the phone's Network
Configuration menu. For more information, see the
Configuration Menu Options" section on page
Chapter 1
An Overview of the Cisco IP Phone
"Network
4-6.
OL-4825-01

Advertisement

Table of Contents
loading

This manual is also suitable for:

7940g

Table of Contents