Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Mike Lewis on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

IX Workplace on SBC no sRTP between SBC and iPhone 1

Status
Not open for further replies.

CHSun

Technical User
Jun 26, 2013
19
HK
Dear,

I am setting IPO R11.0.4.2 with SBC 8.1 for TLS connection. TLS connection succeed. Making call from internal phone to IX Workplace on iPhone, only the path between IPO and SBC can establish sRTP, but SBC to iPhone is RTP only. Call from iPhone to IPO is full-path sRTP. What fault is it?

Note that Presence status and directory search on IX Workplace working fine. All steps following IPO for ASBEC R11.1 Manuals. Using IPO self-sign cert for testing.

Thanks for helping


CH
 
If you do a SIP trace on the SBC, is one side not supporting sRTP?

"Trying is the first step to failure..." - Homer
 
I'm not that keen on opening docx files, call me paranoid but many exploits use that extension.

It's much better if you SSH to the box and use the traceSBC command to see the SIP messages.
It will then save the trace as a txt file which you can download with SCP.

You can also create a pcap from the webinterface by selecting the SBC, and Monitoring & Logging -> Trace

"Trying is the first step to failure..." - Homer
 
When call originates from IP Office the SBC doesn't include the SRTP information on the INVITE to the client.

Does your Media Rule say it prefers encrypted RTP?

"Trying is the first step to failure..." - Homer
 
Hi,

The Media Encryption settings are:

Audio Encryption
Preferred Format #1: SRTP_AES_CM_128_HMAC_SHA1_80
Preferred Format #2: NONE
Preferred Format #3: NONE
SRTP Context Reset on SSRC Change: Unchecked
Encryption RTPC: Unchecked
MKI: Unchecked
Lifetime: None
Interworking: Checked
Video Encryption (Same as audio encryption)
Miscellaneous
Capability Negotiation: Checked

Any other setting needed?

Thanks!

CH
 
It should be that the Subscriber Flow doesn't you the right End Point Policy Group, or the settings in the Policy Group aren't correct.

"Trying is the first step to failure..." - Homer
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top