SIP Trunk Security Profile Configuration

SIP Trunk Security Profile Settings

Prev Question Next Question

Question

Which two settings should be configured on the SIP Trunk Security Profile for the IM & Presence Service SIP Trunk? (Choose two.)

Answers

Explanations

Click on the arrows to vote for the correct answer

A. B. C. D. E.

AB.

Configure SIP Trunk Security Profile for IM and Presence Service Procedure Step 1 - Choose Cisco Unified CM Administration > System > Security > SIP Trunk Security Profile.

Step 2 - Click Find.

Step 3 - Click Non Secure SIP Trunk Profile.

Step 4 - Click Copy and enter CUP Trunk in the Name field.

Step 5 - Verify that the setting for Device Security Mode is Non Secure.

Step 6 - Verify that the setting for Incoming Transport Type is TCP+UDP.

Step 7 - Verify that the setting for Outgoing Transport Type is TCP.

Step 8 - Check to enable these items: Step 9 - Click Save.

http://www.cisco.com/c/en/us/td/docs/voice_ip_comm/cucm/im_presence/configAdminGuide/9_0/

The SIP Trunk Security Profile for the IM & Presence Service SIP Trunk should be configured with the following settings:

A. Check to enable Accept Presence Subscription: This setting allows the SIP trunk to receive presence information from the remote endpoint. Presence information is important in unified communications and collaboration as it allows users to know the availability of other users and their preferred mode of communication.

B. Verify that the setting for Incoming Transport Type is TCP+UDP: This setting specifies the transport protocol that will be used to receive incoming SIP messages. TCP and UDP are the two common transport protocols used in SIP communications. TCP provides a reliable connection-oriented transport, while UDP provides a connectionless transport that is faster and more efficient. By enabling both TCP and UDP, the SIP trunk can receive messages using either protocol.

C. Configure Device Security Mode to Encrypted: This setting enables encryption for the SIP trunk, ensuring that all communication between the endpoints is secure and cannot be intercepted or tampered with by unauthorized parties. It is important to note that encryption requires a certificate to be installed on both endpoints, and both endpoints must support the same encryption algorithm.

D. Check to enable Enable Application Level Authorization: This setting specifies that the SIP trunk should use application-level authorization for all SIP messages. Application-level authorization requires that the sender of the message be authorized by the recipient before any communication can take place. This helps to prevent unauthorized access and ensures that only authorized users can communicate using the SIP trunk.

E. Configure the Outgoing Transport Type to TLS: This setting specifies the transport protocol that will be used to send outgoing SIP messages. TLS (Transport Layer Security) is a secure protocol that provides encryption and authentication, ensuring that all communication between the endpoints is secure and cannot be intercepted or tampered with by unauthorized parties.

In summary, the two settings that should be configured on the SIP Trunk Security Profile for the IM & Presence Service SIP Trunk are:

  1. Check to enable Accept Presence Subscription
  2. Verify that the setting for Incoming Transport Type is TCP+UDP.