Specifications

settings09.fm
A31003-H3590-M100-5-76A9, 11/2011
HiPath 3000 Manager E, Administrator Documentation
9-327
Nur für den internen Gebrauch Settings Menu
Settings | Network
9.10.15.3 Area: Security
No Security, Reduced Security, Full Security
Activation of the H.235 security protocol is configured here:
No security: The security protocol is not used. No crypto tokens are sent by the IP
clients.
Reduced security: The IP clients send crypto tokens and the HG 1500 verifies these
tokens. However, the HG 1500 itself does not send any crypto tokens.
Full security: Both sides send and verify crypto tokens.
Identity
The global gatekeeper identity is specified here.
Password (only for trunking) / Confirm password
Enter the password here and confirm it by repeating the entry.
Security time
This setting configures monitoring for the lifetime of IP packets. This means that a check is then
performed in the communication system to ensure that the incoming IP packets are not older
than the current time plus the time specified in the Security time field. This prevents IP packets
from being potentially traced by a sniffer, for example, and then being resent to the original ad-
dressee after manipulation. The size of the Security time depends on the dynamic runtimes in
the customer LAN. If the selected time is too small, and long runtimes occur, disruptions may
occur in the VoIP traffic. A value of 90 seconds should work without problems in most cases.
>
In order to ensure that H.235 operates correctly, whenever any changes are made
to the corresponding parameters (Gatekeeper and Security), the individual compo-
nents must be restarted.
See also:
Section 9.2.10, “Gatekeeper (V5.0 and Later)”, on page 9-34
Section 9.10, “Settings | Network”, on page 9-294
Section 9.10.16, “Ext. H.323-GK”, on page 9-328
Section 9.10.17, “Ext. SIP”, on page 9-330