EasyManua.ls Logo

AudioCodes Mediant 500L - TLS Parameters

AudioCodes Mediant 500L
1260 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Loading...
Version 7.2 1045 Mediant 500L Gateway & E-SBC
User's Manual 69. Configuration Parameters Reference
69.4.4 TLS Parameters
The Transport Layer Security (TLS) parameters are described in the table below.
Table 69-25: TLS Parameters
Parameter Description
TLS Contexts Table
TLS Contexts
configure system > tls #
[TLSContexts]
Defines SSL/TLS certificates.
The format of the ini file table parameter is as follows:
[ TLSContexts ]
TLSContexts_Index = TLSContexts_Name,
TLSContexts_TLSVersion, TLSContexts_DTLSVersion,
TLSContexts_ServerCipherString,
TLSContexts_ClientCipherString, TLSContexts_RequireStrictCert,
TLSContexts_OcspEnable, TLSContexts_OcspServerPrimary,
TLSContexts_OcspServerSecondary,
TLSContexts_OcspServerPort,
TLSContexts_OcspDefaultResponse, TLSContexts_DHKeySize;
[ \TLSContexts ]
For more information, see ''Configuring TLS Certificate Contexts''
on page 113.
TLS Client Re-Handshake
Interval
configure network/security-
settings/tls-re-hndshk-int
[TLSReHandshakeInterval]
Defines the time interval (in minutes) between TLS Re-
Handshakes initiated by the device.
The interval range is 0 to 1,500 minutes. The default is 0 (i.e., no
TLS Re-Handshake).
TLS Mutual Authentication
[SIPSRequireClientCertificate]
Defines the device's mode of operation regarding mutual
authentication and certificate verification for TLS connections.
[0] Disable = (Default)
Device acts as a client: Verification of the server’s
certificate depends on the VerifyServerCertificate
parameter.
Device acts as a server: The device does not request the
client certificate.
[1] Enable =
Device acts as a client: Verification of the server certificate
is required to establish the TLS connection.
Device acts as a server: The device requires the receipt
and verification of the client certificate to establish the TLS
connection.
Note:
For the parameter to take effect, a device reset is required.
This feature can be configured per SIP Interface (see
''Configuring SIP Interfaces'' on page 355).
The SIPS certificate files can be changed using the
parameters HTTPSCertFileName and HTTPSRootFileName.
Peer Host Name Verification
Mode
[PeerHostNameVerificationMode]
Enables the device to verify the Subject Name of a TLS certificate
received from SIP entities for authentication and establishing TLS
connections.

Table of Contents

Other manuals for AudioCodes Mediant 500L

Related product manuals