13.07.2015 Views

Administration of the Avaya G350 Media Gateway - Avaya Support

Administration of the Avaya G350 Media Gateway - Avaya Support

Administration of the Avaya G350 Media Gateway - Avaya Support

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

OverviewTable 15: Critical security parameters 3 <strong>of</strong> 3Key Description/Usage StorageFixed Serial Number secretEphemeral Serial NumbersecretThe TDES key used for <strong>the</strong> firstexchange <strong>of</strong> <strong>the</strong> serial number and newsession key between <strong>Gateway</strong> andS8300/Blade server entityThe TDES key used for serial numberand key renewal. This key is periodicallyre-negotiated between S8300/Bladeserver entity and <strong>the</strong> <strong>Gateway</strong>.3 <strong>of</strong> 3Public keysTable 16 lists <strong>the</strong> public keys available in <strong>the</strong> module:Table 16: Public keysKeyEphemeral DH phase-1 publickeysEphemeral DH phase-2 publickeysImage download certificate(<strong>Avaya</strong> root CA RSA public key)License download public keyDescription/UsageGenerated for VPN IKE Phase 1 keyestablishmentGenerated for VPN IKE Phase 2 PFS keyrenewalUsed for au<strong>the</strong>ntication <strong>of</strong> s<strong>of</strong>tware download.The <strong>Avaya</strong> Root certificate is hard-coded in <strong>the</strong><strong>Gateway</strong> image and is used directly forau<strong>the</strong>ntication <strong>of</strong> <strong>the</strong> chain <strong>of</strong> trust <strong>of</strong> <strong>the</strong> <strong>Avaya</strong>Signing Authority that is downloaded toge<strong>the</strong>rwith <strong>the</strong> s<strong>of</strong>tware.Used for au<strong>the</strong>ntication <strong>of</strong> license file validity. Thelicense signing authority public key is hard-codedin <strong>the</strong> <strong>Gateway</strong> image and is used directly forau<strong>the</strong>ntication <strong>of</strong> <strong>the</strong> digital signature embeddedin <strong>the</strong> license file.Issue 3 January 2005 299

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!