User's Manual
492
Document #: LTRT-65417
MP-11x & MP-124
Parameter
Description
Web: TLS Mutual Authentication
EMS: SIPS Require Client
Certificate
[SIPSRequireClientCertificate]
Determines the device's behavior when acting as a server for
TLS connections.
[0]
Disable = (Default) The device does not request the
client certificate.
[1]
Enable = The device requires receipt and verification of
the client certificate to establish the TLS connection.
Notes:
For this parameter to take effect, a device reset is required.
The SIPS certificate files can be changed using the
parameters HTTPSCertFileName and
HTTPSRootFileName.
Web/EMS: Peer Host Name
Verification Mode
[PeerHostNameVerificationMode]
Determines whether the device verifies the Subject Name of a
remote certificate when establishing TLS connections.
[0]
Disable (default).
[1]
Server Only = Verify Subject Name only when acting as
a client for the TLS connection.
[2]
Server & Client = Verify Subject Name when acting as a
server or client for the TLS connection.
When a remote certificate is received and this parameter is not
disabled, the value of SubjectAltName is compared with the list
of available Proxies. If a match is found for any of the
configured Proxies, the TLS connection is established.
The comparison is performed if the SubjectAltName is either a
DNS name (DNSName) or an IP address. If no match is found
and the SubjectAltName is marked as ‘critical’, the TLS
connection is not established. If DNSName is used, the
certificate can also use wildcards (‘*’) to replace parts of the
domain name.
If the SubjectAltName is not marked as ‘critical’ and there is no
match, the CN value of the SubjectName field is compared with
the parameter TLSRemoteSubjectName. If a match is found,
the connection is established. Otherwise, the connection is
terminated.
Note:
If you set this parameter to
[2]
(Server & Client), for this
functionality to operate, you also need to set the
SIPSRequireClientCertificate parameter to
[1]
(Enable).
Web: TLS Client Verify Server
Certificate
EMS: Verify Server Certificate
[VerifyServerCertificate]
Determines whether the device, when acting as a client for TLS
connections, verifies the Server certificate. The certificate is
verified with the Root CA information.
[0]
Disable (default)
[1]
Enable
Note:
If Subject Name verification is necessary, the parameter
PeerHostNameVerificationMode must be used as well.
Web/EMS: TLS Remote Subject
Name
[TLSRemoteSubjectName]
Defines the Subject Name that is compared with the name
defined in the remote side certificate when establishing TLS
connections.
If the SubjectAltName of the received certificate is not equal to
any of the defined Proxies Host names/IP addresses and is not
marked as 'critical', the Common Name (CN) of the Subject field
is compared with this value. If not equal, the TLS connection is
not established. If the CN uses a domain name, the certificate
can also use wildcards (‘*’) to replace parts of the domain
Summary of Contents for MediaPack MP-112
Page 2: ......
Page 14: ...User s Manual 14 Document LTRT 65417 MP 11x MP 124 Reader s Notes ...
Page 21: ...Part I Getting Started with Initial Connectivity ...
Page 22: ......
Page 30: ...User s Manual 30 Document LTRT 65417 MP 11x MP 124 Reader s Notes ...
Page 31: ...Part II Management Tools ...
Page 32: ......
Page 34: ...User s Manual 34 Document LTRT 65417 MP 11x MP 124 Reader s Notes ...
Page 78: ...User s Manual 78 Document LTRT 65417 MP 11x MP 124 Reader s Notes ...
Page 84: ...User s Manual 84 Document LTRT 65417 MP 11x MP 124 Reader s Notes ...
Page 86: ...User s Manual 86 Document LTRT 65417 MP 11x MP 124 Reader s Notes ...
Page 91: ...Part III General System Settings ...
Page 92: ......
Page 102: ...User s Manual 102 Document LTRT 65417 MP 11x MP 124 Reader s Notes ...
Page 103: ...Part IV General VoIP Configuration ...
Page 104: ......
Page 162: ...User s Manual 162 Document LTRT 65417 MP 11x MP 124 Reader s Notes ...
Page 172: ...User s Manual 172 Document LTRT 65417 MP 11x MP 124 Reader s Notes ...
Page 199: ...Part V Gateway Application ...
Page 200: ......
Page 202: ...User s Manual 202 Document LTRT 65417 MP 11x MP 124 Reader s Notes ...
Page 240: ...User s Manual 240 Document LTRT 65417 MP 11x MP 124 Reader s Notes ...
Page 286: ...User s Manual 286 Document LTRT 65417 MP 11x MP 124 Reader s Notes ...
Page 287: ...Part VI Stand Alone Survivability Application ...
Page 288: ......
Page 296: ...User s Manual 296 Document LTRT 65417 MP 11x MP 124 Reader s Notes ...
Page 319: ...Part VII Maintenance ...
Page 320: ......
Page 326: ...User s Manual 326 Document LTRT 65417 MP 11x MP 124 Reader s Notes ...
Page 347: ...Part VIII Status Performance Monitoring and Reporting ...
Page 348: ......
Page 377: ...Part IX Diagnostics ...
Page 378: ......
Page 390: ...User s Manual 390 Document LTRT 65417 MP 11x MP 124 ...
Page 392: ...User s Manual 392 Document LTRT 65417 MP 11x MP 124 Reader s Notes ...
Page 403: ...Part X Appendix ...
Page 404: ......
Page 618: ...User s Manual 618 Document LTRT 65417 MP 11x MP 124 Reader s Notes ...