Laserfiche WebLink
<br />The Cisco strategy for protecting IP Communications systems is based on concepts that are important to protecting both internal networks <br />and external communications systems. Trust and identity, secure connectivity, and threat defense transcend business boundaries. Cisco <br />continues to offer solutions based on industry standards and to work with other leaders in information security to develop solutions that <br />deliver the greatest possible interoperability between organizations. <br /> <br />Among the capabilities and features Cisco offers are: <br />· Digital certificates in Cisco IP phones and in Cisco CallManager <br />· Authenticated and encrypted Transport Layer Security (TLS, or SSL Version 3.0) signaling to avoid man-in-the-middle attacks <br />· Secure Real-Time Protocol (SRTP) media encryption to prevent eavesdropping <br />· Improved, hardened operating system for Cisco CallManager <br />· Integrated Cisco Security Agent (headless) with every Cisco CallManager shipped <br />· VLAN segmentation, Layer 3 VPN (V3PN), route authentication <br />· IP source guard; industry-leading firewalls; intrusion detection and intrusion protection systems; and authentication, authorization, <br />and accounting (AAA) tools for the infrastructure <br />· Protection against Dynamic Host Control Protocol (DHCP) snooping <br />· Ability to ignore gratuitous Address Resolution Protocol (ARP) and to disable PC access to voice VLAN through the phone <br />· IPSec encryption to gateways, secure enrollment capability <br />· H.323/SIP standards-based signaling <br />· Multilevel administration, certificate trust list <br />· Toll-fraud mitigation techniques <br />· The ability to minimize unused services <br /> <br /> <br />Call Manager <br /> <br />. Hardened OS <br />. Minimize Win2K <br />services <br />. IPSec Filters <br />. HIPS/anti-virus <br /> <br />r _ <br />I Bi~]J I <br />11-+' <br />I aiijl~J II <br />I ~111 willi I <br /> <br />Endpoints <br /> <br />. Separate voice <br />and data VLANS <br />. ~isable GARP and <br />voice VLAN on PC port <br />. Authentication <br />and Encryption <br /> <br />". ' . "-. <br />. . - ,'-..:''.,;^ <br />oYoi91J~verl.Net <br />usingV3PN.......... . <br />. o IDS DoS tools' <br />..NetworldOS' .' <br /> <br />Internet <br /> <br />PSTN <br /> <br />12 <br />