Appendices | TANDBERG Videoconferencing System |
Encryption
All TANDBERG systems support both AES* and DES encryption. By default this feature is enabled such that when connecting with any other video system or MCU, a TANDBERG system will attempt to establish a secure conference using AES* or DES encryption. The TANDBERG system will attempt this for both IP and ISDN connections. Where a remote system or MCU supports encryption, the highest common encryption algorithm will be selected on a port by port basis.
The type and status of the encryption negotiated is indicated by padlock symbols and
An open padlock indicates that encryption is being initialized, but the conference is not yet encrypted.
Single padlock indicates DES encryption.
Double padlock indicates AES encryption.
In addition to
When a TANDBERG codec with MultiSite functionality hosts a conference, the highest possible encryption algorithm will be negotiated on a site by site basis. MultiSite conferences can therefore support a mix of AES and DES encrypted endpoints in the same conference.
A conference will only be as secure as its ‘weakest link’. Even though conference participants may have negotiated and be running AES encryption, if just one participant has negotiated DES encryption, the AES system will display the single padlock symbol to advise all users of the lowest encryption mechanism currently in effect.
All TANDBERG endpoint supporting DES encryption can upgrade to AES encryption by applying TANDBERG’s AES Encryption option. Please contact your TANDBERG representative for more information.
The standards supporting the encryption mechanisms employed by TANDBERG are: AES*, DES, H.233, H234 and H.235 with extended Diffie Hellman key distribution via H.320, H.323 and Leased Line connections.
NOTE
THE TANDBERG AES IMPLEMENTATION IS VALIDATED AS CONFORMING TO THE ADVANCED ENCRYPTION STANDARD (AES) ALGORITHM, AS SPECIFIED IN FEDERAL INFORMATION PROCESSING STANDARD PUBLICATION 197, ADVANCED ENCRYPTION STANDARD, BY THE THE NATIONAL INSTITUTE OF STANDARDS AND TECHNOLOGY (NIST)
* - Optional feature