19.08.2013 Views

RMX 2000 Administrator's Guide - Polycom Support

RMX 2000 Administrator's Guide - Polycom Support

RMX 2000 Administrator's Guide - Polycom Support

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Chapter 2-Additional Conferencing Information<br />

Media Encryption<br />

2-30<br />

Encryption is available at the conference and participant levels, based on<br />

AES 128 (Advanced Encryption Standard) and is fully H.233/H.234<br />

compliant and the Encryption Key exchange DH 1024-bit (Diffie-<br />

Hellman) standards.<br />

Media Encryption <strong>Guide</strong>lines<br />

• Encryption is not available in all countries and it is enabled in the<br />

MCU license. Contact <strong>Polycom</strong> <strong>Support</strong> to enable it.<br />

• Endpoints must support both AES 128 encryption and DH 1024 key<br />

exchange standards which are compliant with H.235 (H.323) to<br />

encrypt and to join an encrypted conference.<br />

• The encryption mode of the endpoints is not automatically<br />

recognized, therefore the encryption mode must be set for the<br />

conference or the participants (when defined).<br />

• Media Encryption for ISDN/PSTN participants is implemented in <strong>RMX</strong><br />

systems with MPM+ cards only.<br />

• Conference level encryption must be set in the Profile, and cannot be<br />

changed once the conference is running.<br />

• If an endpoint connected to an encrypted conference stops encrypting<br />

its media it is disconnected from the conference.<br />

• Mixing encrypted and non-encrypted endpoints in one conference is<br />

possible, based on system flag settings:<br />

(ALLOW_NON_ENCRYPT_PARTY_IN_ENCRYPT_CONF).<br />

The behavior is different for H.323 and ISDN participants.<br />

• In Cascaded conferences, to encrypt the conferences the link between<br />

the cascaded conferences must be encrypted.<br />

• Media Encryption for ISDN/PSTN (H.320) participants is not<br />

supported in cascaded conferences.<br />

You can define whether access to conferences for encrypted and nonencrypted<br />

participants is done at the conference level or at the participant<br />

level.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!