SIP User's Manual 136 Document #: LTRT-83310
Mediant 600 & Mediant 1000
To configure IP Security Proposals:
1. Open the ‘IP Security Proposals Table page (Configuration tab > VoIP menu >
Security submenu > IPSec Proposal Table).
Figure 11-2: IP Security Proposals Table
In the figure above, four proposals are defined.
2. Select an Index, click Edit, and then modify the proposal as required.
3. Click Apply.
4. To save the changes to flash memory, see 'Saving Configuration' on page 482.
To delete a proposal, select the relevant Index number, and then click Delete.
Table 11-2: IP Security Proposals Table Configuration Parameters
Parameter Name Description
Encryption Algorithm
[IPsecProposalTable_Encryption
Algorithm]
Determines the encryption (privacy) algorithm.
[0] NONE
[1] DES CBC
[2] 3DES CBC
[3] AES (default)
Authentication Algorithm
[IPsecProposalTable_Authentica
tionAlgorithm]
Determines the message authentication (integrity) algorithm.
[0] NONE
[2] HMAC SHA1 96
[4] HMAC MD5 96 (default)
Diffie Hellman Group
[IPsecProposalTable_DHGroup]
Determines the length of the key created by the DH protocol for
up to four proposals. For the ini file parameter, X denotes the
proposal number (0 to 3).
[0] Group 1 (768 Bits) = DH-786-Bit
[1] Group 2 (1024 Bits) (default) = DH-1024-Bit
If no proposals are defined, the default settings (shown in the following table) are applied.
Table 11-3: Default IPSec/IKE Proposals
Proposal Encryption Authentication DH Group
Proposal 0
3DES SHA1 Group 2 (1024 bit)
Proposal 1
3DES MD5 Group 2 (1024 bit)
Proposal 2
3DES SHA1 Group 1 (786 bit)
Proposal 3
3DES MD5 Group 1 (786 bit)