Security Features
191
Transport Layer Security (TLS)
TLS is a commonly-used protocol for providing communications privacy and managing the security of message trans-
mission, allowing IP phones to communicate with other remote parties and connect to the HTTPS URL for provisioning
in a way that is designed to prevent eavesdropping and tampering.
Yealink IP phones support TLS version 1.0, 1.1 and 1.2. When TLS is enabled for an account, the SIP message of this
account will be encrypted, and a lock icon appears on the LCD screen after the successful TLS negotiation.
Topics
Supported Cipher Suites
Supported Trusted and Server Certificates
TLS Configuration
Supported Cipher Suites
A cipher suite is a named combination of authentication, encryption, and message authentication code (MAC)
algorithms used to negotiate the security settings for a network connection using the TLS/SSL network protocol.
Yealink IP phones support the following cipher suites:
l DHE-RSA-AES256-SHA
l DHE-DSS-AES256-SHA
l AES256-SHA
l EDH-RSA-DES-CBC3-SHA
l EDH-DSS-DES-CBC3-SHA
l DES-CBC3-SHA
l DES-CBC3-MD5
l DHE-RSA-AES128-SHA
l DHE-DSS-AES128-SHA
l AES128-SHA
l RC2-CBC-MD5
l IDEA-CBC-SHA
l DHE-DSS-RC4-SHA
l RC4-SHA
l RC4-MD5
l RC4-64-MD5
l EXP1024-DHE-DSS-DES-CBC-SHA
l EXP1024-DES-CBC-SHA
l EDH-RSA-DES-CBC-SHA
l EDH-DSS-DES-CBC-SHA
l DES-CBC-SHA
l DES-CBC-MD5
l EXP1024-DHE-DSS-RC4-SHA
l EXP1024-RC4-SHA
l EXP1024-RC4-MD5
l EXP-EDH-RSA-DES-CBC-SHA
l EXP-EDH-DSS-DES-CBC-SHA