Security Enhancements For Your Phone Network; Supported Security Features - Cisco 8832 Administration Manual

Ip conference phone
Hide thumbs Also See for 8832:
Table of Contents

Advertisement

Security Enhancements for Your Phone Network

Phone failed to register. Cert key size is not FIPS compliant displays in the
phone's status messages.
You cannot use private keys (LSC or MIC) in FIPS mode.
If the phone has an existing LSC that is smaller than 2048 bits, you need to update the LSC key size to 2048
bits or greater before enabling FIPS.
Related Topics
Security Enhancements for Your Phone Network
You can enable Cisco Unified Communications Manager 11.5(1) and 12.0(1) to operate in an enhanced
security environment. With these enhancements, your phone network operates under a set of strict security
and risk management controls to protect you and your users.
Cisco Unified Communications Manager 12.5(1) does not support an enhanced security environment. Disable
FIPS before upgrading to Cisco Unified Communications Manager 12.5(1) or your TFTP and other services
will not function properly.
The enhanced security environment includes the following features:
• Contact search authentication.
• TCP as the default protocol for remote audit logging.
• FIPS mode.
• An improved credentials policy.
• Support for the SHA-2 family of hashes for digital signatures.
• Support for a RSA key size of 1024 and 4096 bits.
For additional information about security, see the following:
• Security Guide for Cisco Unified Communications
Note
Your Cisco IP phone can only store a limited number of Identity Trust List (ITL) files. ITL files cannot exceed
64K limit on phone so limit the number of files that the Cisco Unified Communications Manager sends to the
phone.

Supported Security Features

Security features protect against several threats, including threats to the identity of the phone and to data.
These features establish and maintain authenticated communication streams between the phone and the Cisco
Unified Communications Manager server, and ensure that the phone uses only digitally signed files.
Cisco IP Conference Phone 8832 Administration Guide for Cisco Unified Communications Manager
68
Set Up a Locally Significant
Cisco Unified Communications Manager
unified-communications/unified-communications-manager-callmanager/
products-maintenance-guides-list.html)
Certificate, on page 72
Documentation, on page 12
Manager(https://www.cisco.com/c/en/us/support/
Cisco IP Conference Phone Administration

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents