Nortel Networks MCP 1.1 FP1(02.02) manual Security and Administration, Security strategy overview

Page 43

Nortel Networks Confidential

43

 

 

Security and Administration

How this chapter is organized

This chapter is organized as follows:

“Security strategy overview” on page 43

“User administration” on page 45

Security strategy overview

One function of the RTP Media Portal is to secure the media interface to the private network. Securing the media layer is achieved through a combination of methods at the network level and RTP Media Portal component level.

Network level security functions

At the network level, media layer security is achieved by the randomization of the IP addresses/ports used for multimedia sessions and utilization of NAPT (Network Address Port Translation) technology to obscure the network topology of the private network.

Blade (IP address) randomization

When a multimedia session requests resources, the RTP Media Portal selects an appropriate blade to host the session. Blade selection determines the specific IP address that will be made available to the media streams for the session.

During the selection of a blade, the port usage of each blade is queried to determine the number of available ports for each. The blade which has the most available ports is selected. This method of selection provides randomization and helps distribute the session load across the blades.

Port randomization

When the RTP Media Portal is deployed, each blade is assigned a pool of ports with a specific number of ports in a specific range based on configuration data (Number Ports, Min Port Value, Max Port Value, respectively). For more information on these configuration properties,

Copyright © 2003, Nortel Networks

MCP RTP Media Portal Basics

Image 43
Contents MCP RTP Media Portal Page How this chapter is organized OverviewFunctional description Hardware Description Network Component InteroperabilityCard slots for the two different domains Motorola chassis CPX8216T OAM&P strategy Software update maintenance loadsInterfaces Protocols RTP Media Portal interfaces Network Interfaces Signaling and OAM interface CPV5370 Host CPU MCPN765 Media stream interface User interfaces Page RTP Media Portal software upgrade UpgradesOAM&P strategy Shutdown the RTP Media Portal component Task flowsUpdating the RTP Media Portal from the menu tree Update a software loadUpdating the RTP Media Portal from the pull-down menu Load list for updating Successful update dialog box Network fault management strategy Fault managementFault tolerance Fault management procedures Alarm surveillance Example of viewing alarm information Clearing an alarm Clearing the RTP101 Alarm Blade out of service RTP Media Portal AlarmsLogs Clearing the RTP105 Alarm Private Port UsagePage Adding the RTP Media Portal component Configuration managementConfiguration procedures Network strategySoftware load list Add successful dialog box Configuration tabs and properties Configuration management Nortel Networks Confidential RTP Media Portal tab 1 RTP Media Portal tab 2 RTP Media Portal tab 3 RTP Media Portal tab 4 Nortel Networks Confidential Configuration management RTP Media Portal tab configurable properties Not for the host Default gateways are for the cards, not for the hostDefault gateways Are for the cardsRTP Media Portal tab configurable properties RTP Media Portal tab configurable properties RTP Media Portal tab configurable properties Strategy Accounting managementPage Performance management Page Blade IP address randomization Security and AdministrationSecurity strategy overview Network level security functionsPacket filter/firewall Authenticated requestsNapt function RTP Media Portal component level security functionsUser administration Page Page MCP RTP Media Portal