Cisco Cisco IOS Software Release 12.4(2)T Prospecto

Descargar
Página de 50
© 2008 Cisco Systems, Inc. All rights reserved.
37
Threat Defense 
UC Trusted Firewall Control
ƒ Firewall looks at the signaling to 
determine what ports media will flow 
through; FWs also have the ability to 
create zones for this protection
ƒ If you upgrade a voice application 
server the firewall might be affected
ƒ If the FW does not see signaling 
(encrypted, asymmetrical path) then 
media ports cannot be opened
CUCM
A
A
CUCM
Signaling
FW Application Layer Gateway 
UC Trusted Firewall Control
RTP
I see 
signaling, 
maybe valid 
call? Open 
media 
ports???
Signaling
RTP
TRP
Valid Authorized 
Call Details
ƒ Firewall receives a hashed STUN 
message with details of an 
authorized call 
ƒ Protocol version independent
ƒ Secures Encrypted Signaling
ƒ Secures asymmetrical signaling and 
media paths
Voice