
12
Chapter 1 Overview
1.8 IP Security
The Signaling Gateway offers a number of security features to protect it from unwarranted access on its IP
interface. It is recommended that you always enable the optional password protection on the management
interface port and on the FTP server port (if used).
For additional security, the Signaling Gateway is also equipped to support telnet and FTP access using a
Secure Shell (SSH).
Unused ports are disabled to increase security against unintentional or malicious interference.
Additional security may be gained by separating management and signaling IP traffic. This can be achieved
by configuring specific Ethernet ports for traffic and utilizing other Ethernet ports for system management.
It should be understood that while the Signaling Gateway has been designed with security in mind, it is
recommended that Signaling Gateway accessibility over IP be restricted to as small a network as possible. If
the unit is accessible by third parties, the use of a third-party firewall should be considered.
1.9 Functional Summary
The functional summary is described in the following topics:
• Signaling
• Configuration Model
• Cross Connections
• Monitoring
• Remote Data Centers
• Alarm Log
• Diagnostic Log Files
• M3UA Backhaul Operation
• M2PA Longhaul Operation
• Dual Operation
• Default Routing
• Resilience
1.9.1 Signaling
The Signaling Gateway supports the Message Transfer Part (MTP) in accordance with ITU Recommendations
Q.700, Q.704 and Q.707 and ANSI operation in accordance with ANSI T1.111.
When a link set contains two or more signaling links, the Signaling Gateway supports load sharing and the
full changeover and changeback procedures in accordance with ITU-T Q.704.
The Signaling Gateway supports up to 256 TDM SS7 signaling links allowing the Signaling Gateway to
interface over TDM to a maximum of 64 other signaling points.
The Signaling Gateway supports up to 256 M2PA SS7 signaling links, allowing the Signaling Gateway to
interface over IP to a maximum of 256 other signaling points.
The Signaling Gateway can have a presence in up to six separate IP subnets.
M2PA is supported in accordance with the IETF SS7 MTP2-User Peer-to-Peer Adaptation Layer specification.
SCTP is supported in accordance with IETF RFC 2960 and RFC 3309 Stream Control Transmission Protocol.
The Signaling Gateway supports communication with up to 256 Application Servers Processes (ASPs) for
backhaul operation over M3UA.
M3UA is supported in accordance with the IETF RFC 3332 SS7 MTP3 User Adaptation Layer.
Kommentare zu diesen Handbüchern