Version 7.0 871 Mediant 3000
User's Manual 58. Configuration Parameters Reference
Parameter Description
[RTCPEncryptionDisable
Tx]
ï‚§
ï‚§ [1] Disable
[ResetSRTPStateUponR
ekey]
Global parameter that enables synchronization of the SRTP state
between the device and a server when a new SRTP key is generated
upon a SIP session expire. You can also configure this functionality per
specific calls, using IP Profiles (IpProfile_ResetSRTPStateUponRekey).
For a detailed description of the parameter and for configuring this
functionality in the IP Profile table, see ''Configuring IP Profiles'' on page
391.
Note: If this functionality is configured for a specific IP Profile, the settings
of this global parameter is ignored for calls associated with the IP Profile.
58.4.4 TLS Parameters
The Transport Layer Security (TLS) parameters are described in the table below.
Table 58-27: TLS Parameters
Parameter Description
TLS Contexts Table
TLS Contexts Table
[TLSContexts]
Defines SSL/TLS certificates.
The format of the ini file table parameter is as follows:
[ TLSContexts ]
FORMAT TLSContexts_Index = TLSContexts_Name,
TLSContexts_TLSVersion, TLSContexts_ServerCipherString,
TLSContexts_ClientCipherString, TLSContexts_OcspEnable,
TLSContexts_OcspServerPrimary, TLSContexts_OcspServerSecondary,
TLSContexts_OcspServerPort, TLSContexts_OcspDefaultResponse;
[ \TLSContexts ]
For a detailed description of the table, see ''Configuring TLS Certificate
Contexts'' on page 123.
TLS Client Re-
Handshake Interval
[TLSReHandshakeInterv
al]
Defines the time interval (in minutes) between TLS Re-Handshakes
initiated by the device.
The interval range is 0 to 1,500 minutes. The default is 0 (i.e., no TLS Re-
Handshake).
TLS Mutual
Authentication
[SIPSRequireClientCertifi
cate]
Defines the device's mode of operation regarding mutual authentication
and certificate verification for TLS connections.
ï‚§ [0] Disable = (Default)
Device acts as a client: Verification of the server’s certificate
depends on the VerifyServerCertificate parameter.
Device acts as a server: The device does not request the client
certificate.
ï‚§ [1] Enable =
Device acts as a client: Verification of the server certificate is
required to establish the TLS connection.