Configuring SRTP Crypto Suite Groups
The Crypto Suite Groups table lets you configure groups of SRTP crypto suites, which you can then assign to IP Profiles. Therefore, instead of configuring a single crypto suite for all calls using the global parameter 'Offered SRTP Cipher Suites' (as described in Configuring SRTP), you can use the Crypto Suite Groups table to configure specific crypto suites for specific calls (IP Profiles). To assign a Crypto Suite Group to an IP Profile, use the IP Profile's 'Crypto Suites Group' parameter (see Configuring IP Profiles).
You configure a Crypto Suite Group using two tables with parent-child relationship:
| ■ | Crypto Suite Groups table (parent): Defines the name of the Crypto Suite Group. You can configure up to 10 Crypto Suite Groups. |
| ■ | Crypto Suites table (child): Defines the crypto suites for the Crypto Suite Group. You can configure each Crypto Suite Group with up to 4 crypto suites. |
This feature is applicable only to the SBC application.
The following procedure describes how to configure Crypto Suite Groups through the Web interface. You can also configure it through other management platforms:
| ■ | Crypto Suite Groups table: ini file [CryptoSuitesGroups] or CLI (configure voip > media crypto-suites-groups) |
| ■ | Crypto Suites table: ini file [CryptoSuites] or CLI (configure voip > media crypto-suites-groups > crypto-suites) |
| ➢ | To configure a Crypto Suite Group: |
| 1. | Open the Crypto Suite Groups table (Setup menu > Signaling & Media tab > Media folder > Crypto Suite Groups). |
| 2. | Click New; the following dialog box appears: |
| 3. | Configure a name for the Crypto Suite Group according to the parameters described in the table below. |
| 4. | Click Apply. |
Crypto Suite Groups Table Parameter Descriptions
|
Parameter |
Description |
|---|---|
|
'Index' [Index] |
Defines an index number for the new table row. Note: Each row must have a unique index. |
|
'Name' crypto-suites-group-name [Name] |
Defines a descriptive name, which is used when associating the row in other tables. The valid value is a string of up to 40 characters. Note: The parameter value must be unique. |
| 5. | In the Crypto Suite Groups table, select the row for which you want to configure crypto suites, and then click the Crypto Suites link located below the table; the Crypto Suites table appears. |
| 6. | Click New; the following dialog box appears: |
| 7. | Configure a rule according to the parameters described in the table below. |
| 8. | Click New, and then save your settings to flash memory. |
Crypto Suites Table Parameter Descriptions
|
Parameter |
Description |
||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| General | |||||||||||||||||||
|
'Index' crypto-suites <index/index> [CryptoSuiteIndex] |
Defines an index number for the new table row. Note: Each row must have a unique index. |
||||||||||||||||||
|
'Supported Crypto Suite' crypto-suite [CryptoSuite] |
Defines the SRTP crypto suite.
Note:
|
||||||||||||||||||