Cisco WRP400-G1 Administration Guide - Page 54

Secure Call Implementation, Enabling Secure Calls - pdf

Page 54 highlights

Secure Call Implementation 3 Secure Call Implementation This section describes secure call implementation with the WRP400 . It includes the following topics: • "Enabling Secure Calls" section on page 52 • "Secure Call Details" section on page 53 • "Using a Mini-Certificate" section on page 54 • "Generating a Mini Certificate" section on page 55 NOTE This is an advanced topic meant for experience installers. Also see the Provisioning Guide at the following URL: www.cisco.com/en/US/docs/voice_ip_comm/csbpvga/ata/provisioning/guide/ Cisco_Small_Business_IP_Telephony_Provisioning_Guide.pdf Enabling Secure Calls A secure call is established in two stages. The first stage is no different from normal call setup. The second stage starts after the call is established in the normal way with both sides ready to stream RTP packets. In the second stage, the two parties exchange information to determine if the current call can switch over to the secure mode. The information is transported by base64 encoding embedded in the message body of SIP INFO requests, and responses using a proprietary format. If the second stage is successful, the WRP400 plays a special Secure Call Indication Tone for a short time to indicate to both parties that the call is secured and that RTP traffic in both directions is being encrypted. If the user has a phone that supports call waiting caller ID (CIDCW) and that service is enabled, the CID will be updated with the information extracted from the Mini-Certificate received from the remote party. The Name field of the CID will be prepended with a '$' symbol. Both parties can verify the name and number to ensure the identity of the remote party. Cisco Small Business WRP400 Administration Guide 52

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173

Secure Call Implementation
Cisco Small Business WRP400 Administration Guide
52
3
Secure Call Implementation
This section describes secure call implementation with the WRP400 . It includes
the following topics:
“Enabling Secure Calls” section on page 52
“Secure Call Details” section on page 53
“Using a Mini-Certificate” section on page 54
“Generating a Mini Certificate” section on page 55
NOTE
This is an advanced topic meant for experience installers. Also see the
Provisioning
Guide
at the following URL:
www.cisco.com/en/US/docs/voice_ip_comm/csbpvga/ata/provisioning/guide/
Cisco_Small_Business_IP_Telephony_Provisioning_Guide.pdf
Enabling Secure Calls
A secure call is established in two stages. The first stage is no different from
normal call setup. The second stage starts after the call is established in the
normal way with both sides ready to stream RTP packets.
In the second stage, the two parties exchange information to determine if the
current call can switch over to the secure mode. The information is transported by
base64 encoding embedded in the message body of SIP INFO requests, and
responses using a proprietary format. If the second stage is successful, the
WRP400 plays a special Secure Call Indication Tone for a short time to indicate to
both parties that the call is secured and that RTP traffic in both directions is being
encrypted.
If the user has a phone that supports call waiting caller ID (CIDCW) and that
service is enabled, the CID will be updated with the information extracted from the
Mini-Certificate received from the remote party. The Name field of the CID will be
prepended with a ‘$’ symbol. Both parties can verify the name and number to
ensure the identity of the remote party.