User guide

20
TLS Settings
If you select TLS or SIPS under the transport setting, this additional setting appears on
the page.
It may be possible to use secure communication without a certicate and make changes
to these settings. In some cases, if you choose TLS or SIPS, the SIP server requires a
certicate for user/client verication. This should be specied in the account information.
Youcan further increase security by requiring verication of the server, or the client
when the OmniTouch 4135 IP acts as a server for incoming calls.
Method The TLS includes a variety of security measures. The methods
are dened in the versions of the standard (SSL, SSL v2, SSL
v3, TLS v1, TLS v2). The default method is SSLv23, which ac-
cepts both SSL v2 and v3.
Negotiation timeout The TLS settings are negotiated during a call setup (both incom-
ing and outgoing). If this negotiation does not succeed within the
specied time (seconds) the negotiation is aborted. Timeout is
disabled with 0 (zero).
Verify client When set to On, the OmniTouch 4135 IP will activate peer
verication for incoming secure SIP connections (TLS or SIPS).
Require client certicate
When set to On, the OmniTouch 4135 IP rejects incoming secure
SIP connections (TLS or SIPS) if the client does not have a valid
certicate.
Verify server When the OmniTouch 4135 IP is acting as a client (outgoing
connections) using secure SIP (TLS or SIPS) it will always
receive a certicate from the peer. If Verify server is set to On,
the OmniTouch 4135 IP closes the connection if the server
certicate is not valid.
SETTINGS