Telephone Systems - Telefonix Voice & Data

 

 

Encrypted Media Path and Signaling Path

Encrypted media and signaling path is supported for all Mitel's IP phones on the 3300 ICP. The media path encryption is accomplished with Secure RTP using 128-bit Advanced Encryption Standard (AES). Encryption is backwards compatible to support both currently shipping desktops as well as previously deployed Mitel IP desktops. Mitel provides encryption of the signaling path between multiple 3300 ICPs using Secure Sockets Layer (SSL) protocol. This allows scalability of applications by configuring 3300 ICPs into clusters or deploying them as part of a centrally managed but distributed architecture.

Phone and User Authentication

Mitel implements phone authentication that requires a unique association of MAC addresses and IP and user-entered PIN registration numbers. Additionally, desktop software downloads are encrypted. Mitel also provides 802.1X authentication for desktops (Release 6.0 and later) which offers support for the Extensible Authentication Protocol (EAP) using EAP-MD5 challenge authentication to a RADIUS Server.

Worm and Virus Protection

The 3300 ICP uses an embedded real time operating system. This system is less susceptible to virus or worm attacks that target traditional applications and their OS services because it provides a very small base of common functionality with general purpose operating systems. This lack of common functionality means that VxWorks is not affected by the viruses and worms typically found on networks and the Internet. This also makes it difficult for an attacker to write a virus targeted at generic VxWorks implementations.

Application servers based on Windows NT/2000 must be properly maintained with regard to current operating system security updates. Mitel products based on Windows NT/2000 include the Contact Center Solutions, Speech Server and Messaging Server systems and Enterprise Manager. These key application servers must be maintained with the latest in Microsoft security updates and worm protection.

Prevention of Toll Abuse

Any communication system that has a combination of Direct Inward System Access (DISA) integrated auto attendant or RAD groups and peripheral interfaced auto attendant or voice mail can be susceptible to toll abuse. Therefore it is important to assign appropriate telephone privileges and restrictions to devices. In addition, public telephones should be denied toll access unless authorized through an attendant.

The 3300 ICP system has comprehensive toll control as an integral part of the call control. It lets you restrict user access to trunk routes and/or specific external directory numbers. It also provides Class of Restriction (COR) and Class of Service (COS) features that can substantially reduce the risk of toll abuse.

As a deterrent to toll abuse by internal callers, Station Message Detail Recording (SMDR) can be used to track calls from within your company, providing detailed information such as the originating extension number, time, duration, and number dialed. SMDR record access should be restricted as with any other function.

Secure Management Interfaces

The 3300 ICP includes a fully integrated set of management tools designed to install, manage, and administer 3300 ICP systems. Three levels of access are provided in order to meet the needs of system technicians, group administrators, and the desktop telephony users themselves. All of these integral management tools use Secure Socket Layer (SSL) security for data encryption.

User access to the management tools is controlled by a login and password. Once a user logs into the 3300 ICP, the system displays a menu of the specific tools to which they have been granted access.

Mitel also offers the Management Access Point to provide secure remote administration for VPN or dial-up access.

Secure Applications

Mitel addresses application security via:

SIP Security

Mitel SIP desktops support secure RTP and also satisfy the PROTOS test suite for CERT advisory CA-2003-06. The SIP desktops also provide support for firewall traversal and SSL-encrypted SIP.

January 2012: Telefonix Voice & Date and Mitel have parted company, and we no longer carry the Mitel telephone system, deepening our specialisation in Avaya IP500 instead. This leaves us, however, in an excellent position to compare the Mitel 3300 phone system and the Avaya IP Office phone system: please contact us using the web or on 01252 333888 if you wish to discuss these phone systems.

Mitel 3300 Phone System A-Z


Next Steps:

Compare phone system quote

 

Address

Telefonix Voice & Data,
437 London Road, Camberley
Surrey, GU153HZ, England
Tel: +44 01252 333 888
Company Reg: 04351046