Cisco Cisco IOS Software Release 12.4(6)T Dépliant
© 2008 Cisco Systems, Inc. All rights reserved.
37
Threat Defense
UC Trusted Firewall Control
UC Trusted Firewall Control
Firewall looks at the signaling to
determine what ports media will flow
through; FWs also have the ability to
create zones for this protection
If you upgrade a voice application
server the firewall might be affected
If the FW does not see signaling
(encrypted, asymmetrical path) then
media ports cannot be opened
CUCM
A
A
CUCM
Signaling
FW Application Layer Gateway
UC Trusted Firewall Control
RTP
I see
signaling,
maybe valid
call? Open
media
ports???
Signaling
RTP
TRP
Valid Authorized
Call Details
Firewall receives a hashed STUN
message with details of an
authorized call
Protocol version independent
Secures Encrypted Signaling
Secures asymmetrical signaling and
Secures Encrypted Signaling
Secures asymmetrical signaling and
media paths
Voice