EasyManuals Logo
Home>AudioCodes>Gateway>E-SBC

AudioCodes E-SBC User Manual

AudioCodes E-SBC
1414 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #306 background imageLoading...
Page #306 background image
CHAPTER16 Services
Mediant 1000 Gateway & E-SBC | User's Manual
Parameter Description
Note:
â–  The parameter is mandatory.
â–  The NGINX directive for this parameter is "proxy_bind".
'Upstream Side SSL'
upstream-use-ssl
[TcpUdpServer_
UpstreamUseSSL]
Enables SSL for securing connection requests with the
Upstream Group.
â–  [0] Disable (default)
â–  [1] Enable
Note:
â–  If configured to Enable, you must assign a TLS Context (see
the 'Upstream TLS Context' parameter below).
â–  The NGINX directive for this parameter is "proxy_ssl on".
'Upstream TLS Context'
upstream-tls-
context
[TcpUdpServer_
UpstreamTLSContext]
Assigns a TLS Context for the TLS connection with the HTTP
location. To configure TLS Contexts, see Configuring TLS
Certificate Contexts on page123.
Note:
â–  The parameter is applicable only if the 'Upstream Side SSL'
parameter is configured to Enable (see above).
â–  The NGINX directives for this parameter are "proxy_ssl_
certificate", "proxy_ssl_certificate_key", "proxy_ssl_
ciphers", "proxy_ssl_protocols", and "proxy_ssl_password_
file".
'Upstream Verify
Certificate'
upstream-verify-
cert
[TcpUdpServer_
UpstreamVerifyCertificate]
Enables TLS certificate verification of the Upstream Host on
outgoing connection requests to the Upstream Group, when the
connection is SSL.
â–  [0] No = (Default) No certificate verification is done.
â–  [1] Yes = The device verifies the authentication of the
certificate received from the host. The device authenticates
the certificate against the trusted root certificate store
associated with the assigned TLS Context (see 'Upstream
TLS Context' parameter above) and if ok, allows
communication with the host. If authentication fails, the
device denies communication (i.e., handshake fails). The
device can also authenticate the certificate by querying with
an Online Certificate Status Protocol (OCSP) server whether
the certificate has been revoked. This is also configured for
the associated TLS Context.
Note:
â–  The parameter is applicable only if the 'Upstream Side SSL'
parameter is configured to Enable (see above).
â–  The NGINX directive for this parameter is "proxy_ssl_
verify".
Configuring Upstream Groups
The Upstream Groups table lets you configure up to 10 Upstream Groups. Once configured, you
can configure Upstream Hosts for the Upstream Group (see Configuring Upstream Hosts on
page270).
- 268 -

Table of Contents

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the AudioCodes E-SBC and is the answer not in the manual?

AudioCodes E-SBC Specifications

General IconGeneral
BrandAudioCodes
ModelE-SBC
CategoryGateway
LanguageEnglish

Related product manuals