Dialogic 4000 Series SU4.1 Manual de usuario Pagina 83

  • Descarga
  • Añadir a mis manuales
  • Imprimir
  • Pagina
    / 226
  • Tabla de contenidos
  • MARCADORES
  • Valorado. / 5. Basado en revisión del cliente
Vista de pagina 82
75
6. Data Security
Data Security Overview
Since version 2.0, Diva SIPcontrol provides the following security options for transmitted
and received data:
Secure HTTP: You can use Secure HTTP (HTTPS) to transmit data between the web-
based configuration interface of Diva SIPcontrol and your web browser.
TLS: The Transport Layer Security (TLS) protocol can be used to encrypt and
authorize SIP messages.
Secure RTP: The Secure Real-time Transport Protocol (SRTP) can be used for
encrypting the data of the actual conversation.
Note: The HTTPS and TLS protocols require digital identity Certificates (e.g., public key
certificates.
This section describes the use of the Secure HTTP, TLS, and Secure RTP protocols. It also
describes how to generate, install, and use private key files and certificates.
Secure HTTP
HTTP is a protocol that transmits data between the web-based configuration interface of
Diva SIPcontrol and your web browser. Even though the HTTP interface has access security
(via a password), the transmitted data is not entirely secure. The data is transmitted as
clear text and thus it is possible for the transmission to be intercepted and, in turn, for the
data to be read.
HTTPS uses HTTP over an encrypted Secure Sockets Layer (SSL) or Transport Layer
Security (TLS) connection and with a different default port than HTTP.
For example, if a message containing a request to change a password was captured by a
third party, the third party could log on to the Diva SIPcontrol web interface and change the
configuration. HTTPS encrypts and authenticates HTTP data, and thus the data is no longer
transmitted as clear text and is not easily readable.
HTTPS requires two actions by the user:
Both Diva SIPcontrol and the computer on which the web browser used to connect to
Diva SIPcontrol via HTTPS is running must be configured with the proper certificate.
When accessing the Diva SIPcontrol web interface, use https://<IP-address-or-URL-
of-Diva-Webserver>:10006/ instead of http://<IP-address-or-URL-of-Diva-
Webserver>:10005/.
TLS
SIP (Session Initiation Protocol) is a signaling protocol used for VoIP calls over the Internet.
SIP messages contain information such as call-party information, call media type, whether it
is a secure call, and if so, what encryption algorithm is used, etc. SIP can be carried by
UDP, TCP, or TLS transports. Both UDP and TCP transport data in clear text. As a result,
UDP and TCP can easily be monitored by a third party. TLS, on the other hand, carries SIP
data in a secure way by encrypting the data and authenticating the transport connections.
Authentication helps to ensure that you are talking to the intended peer. For authentication
purposes, you need to install Certificates, as described in Security Profiles, and enable TLS
as the transport protocol, as described in Network Interfaces.
Vista de pagina 82
1 2 ... 78 79 80 81 82 83 84 85 86 87 88 ... 225 226

Comentarios a estos manuales

Sin comentarios