Operational, Basic, and Advanced Parameters

Transport Layer Security (TLS) Settings

To configure TLS, you must enter the “sip transport protocol” parameter with a value of “4” (TLS). See the “sip transport protocol” description on page A-84.

Also enter the following parameters in the configuration files to configure TLS:

Parameter

Configuration Files

sips persistent tls

aastra.cfg, <model>.cfg, <mac>.cfg

 

 

 

Description

Enables or disables the use of Persistent Transport Layer Security (TLS).

 

Persistent TLS sets up the connection to the server once and re-uses that connection for all

 

calls from the phone. The setup connection for Persistent TLS is established during the

 

registration of the phone. If the phones are set to use Persistent TLS, and a call is made

 

from the phone, this call and all subsequent calls use the same authenticated connection.

 

This significantly reduces the delay time when placing a call.

 

Notes:

 

There can be only one persistent TLS connection created per phone.

 

If you configure the phone to use Persistent TLS, you must also specify the Trusted Cer-

 

tificate file to use. The Root and Intermediate Certificates, Local Certificate, and Private

 

Key files are optional.

 

 

 

Format

Boolean

 

 

 

Default Value

0 (disabled)

 

 

 

Range

0 (disabled)

 

1 (enabled)

 

 

 

Example

sips persistent tls: 1

 

 

 

 

 

 

Parameter

Configuration Files

sip persistent tls keep alive

aastra.cfg, <model>.cfg, <mac>.cfg

 

 

 

Description

When enabled, the configured value indicates frequency (in seconds) that phone will

 

send the keep alive messages.

 

 

 

Format

Integer

 

 

 

Default Value

0 (Disabled)

 

 

 

Range

0-3600

 

 

 

 

Example

sip persistent tls keep alive: 10

 

 

 

 

 

 

Parameter

Configuration Files

sip send sips over tls

aastra.cfg, <model>.cfg, <mac>.cfg

 

 

 

Description

Allows administrators the ability to manually configure the IP phones to use either the SIP

 

or SIPS URI scheme when TLS or persistent TLS is enabled

 

 

 

Format

Integer

 

 

 

Default Value

1 (Enabled)

 

 

 

Range

0-1

 

 

0 (Disabled - Use SIP URI scheme)

 

1 (Enabled - Use SIPS URI scheme)

 

 

 

Example

sip send sips over tls: 0

 

 

 

A-89

41-001343-02 REV04 – 05.2014

Page 688
Image 688
Aastra Telecom 41-001343-02 manual Transport Layer Security TLS Settings, Key files are optional