Media Application Server security
123
Application
Use
Port and protocol
RTFT
Transfer protocol
52007 TCP
IBM eServer
BladeCenter or BladeCenter T
Management Module (to
management module IP)
Remote chassis
management and
configuration
80 TCP (for
administrators
only)
The MAS is configured to accept SIP INVITEs from a particular Session
Manager. This configuration is performed at anytime (during or after
installation).
Note: The user cannot do the configuration, only the system
administrator can perform this.
Media Application Server security
This section describes:
•
"Security issues specific to Ad Hoc Audio Conferencing" (page 123)
•
"Security issues specific to Meet Me Audio Conferencing" (page 125)
•
"Security issues specific to the IM Chat service" (page 126)
Ad Hoc Audio Conferencing security
The Ad Hoc Audio Conferencing service platform can be configured to
accept signaling only from specific IP addresses and ports associated with
those IP addresses. The figure below indicates how to configure trusted
nodes. The only trusted nodes configured should be the Session Manager
service addresses.
Nortel Media Application Server
Media Application Server Planning and Engineering
NN42020-201
01.04
Standard
4.0
27 July 2007
Copyright © 2007, Nortel Networks
.