Podcast
Questions and Answers
Which TCP port must be opened for outbound connections made by Unity Connection for Exchange 2010?
Which TCP port must be opened for outbound connections made by Unity Connection for Exchange 2010?
What type of notifications does Unity Connection use for voice messages?
What type of notifications does Unity Connection use for voice messages?
What is the service account associated with the Jetty service in Unity Connection?
What is the service account associated with the Jetty service in Unity Connection?
What is the primary application affected by the outbound connections made by Unity Connection?
What is the primary application affected by the outbound connections made by Unity Connection?
Signup and view all the answers
Which feature is specifically mentioned for Exchange 2010 in relation to Unity Connection?
Which feature is specifically mentioned for Exchange 2010 in relation to Unity Connection?
Signup and view all the answers
For which application are the outbound notifications intended to notify users about voice message changes?
For which application are the outbound notifications intended to notify users about voice message changes?
Signup and view all the answers
Which of the following best describes the service that operates at TCP port 7080?
Which of the following best describes the service that operates at TCP port 7080?
Signup and view all the answers
What type of service is associated with UDP port 9291 in Unity Connection?
What type of service is associated with UDP port 9291 in Unity Connection?
Signup and view all the answers
Which port is required for video server communication in Unity Connection?
Which port is required for video server communication in Unity Connection?
Signup and view all the answers
Which of the following is NOT an open port for direct connections from off-box clients in Unity Connection?
Which of the following is NOT an open port for direct connections from off-box clients in Unity Connection?
Signup and view all the answers
What function does the WebDAV Sync Service provide in connection with Unity Connection?
What function does the WebDAV Sync Service provide in connection with Unity Connection?
Signup and view all the answers
Which component interacts with the Unity Connection via TCP port 6080?
Which component interacts with the Unity Connection via TCP port 6080?
Signup and view all the answers
How many open ports are specified for direct connections in the provided information?
How many open ports are specified for direct connections in the provided information?
Signup and view all the answers
What is the primary protocol used for notifications of changes to Unity Connection voice messages?
What is the primary protocol used for notifications of changes to Unity Connection voice messages?
Signup and view all the answers
Which of the following statements is true concerning TCP and UDP ports used by Unity Connection?
Which of the following statements is true concerning TCP and UDP ports used by Unity Connection?
Signup and view all the answers
What type of inbox functionality does UDP port 9291 support?
What type of inbox functionality does UDP port 9291 support?
Signup and view all the answers
Which types of addresses do the supported ports utilize?
Which types of addresses do the supported ports utilize?
Signup and view all the answers
What functionality does Cisco Unity Connection Survivable Remote Site Voicemail (SRSV) provide?
What functionality does Cisco Unity Connection Survivable Remote Site Voicemail (SRSV) provide?
Signup and view all the answers
What command can be executed to check the configured minimum TLS version on Unity Connection?
What command can be executed to check the configured minimum TLS version on Unity Connection?
Signup and view all the answers
Which of the following statements about the supported ports is true?
Which of the following statements about the supported ports is true?
Signup and view all the answers
In terms of communication, what do the supported ports primarily focus on?
In terms of communication, what do the supported ports primarily focus on?
Signup and view all the answers
What happens after configuring the minimum TLS version on the Cisco Unity Connection server?
What happens after configuring the minimum TLS version on the Cisco Unity Connection server?
Signup and view all the answers
What distinguishes the supported ports in the content provided?
What distinguishes the supported ports in the content provided?
Signup and view all the answers
What is the primary purpose of restriction tables in Cisco Unity Connection?
What is the primary purpose of restriction tables in Cisco Unity Connection?
Signup and view all the answers
How is toll fraud defined within the context of Cisco Unity Connection?
How is toll fraud defined within the context of Cisco Unity Connection?
Signup and view all the answers
What aspect of remote site communication does Cisco Unity Connection SRSV enhance?
What aspect of remote site communication does Cisco Unity Connection SRSV enhance?
Signup and view all the answers
Which of the following is NOT supported by the ports mentioned?
Which of the following is NOT supported by the ports mentioned?
Signup and view all the answers
What type of security issue does the Cisco Unity Connection guide primarily address?
What type of security issue does the Cisco Unity Connection guide primarily address?
Signup and view all the answers
The functionality of the supported ports is critical for which system?
The functionality of the supported ports is critical for which system?
Signup and view all the answers
What technology integration do the supported ports imply?
What technology integration do the supported ports imply?
Signup and view all the answers
Which aspect enhances the utility of Cisco Unity Connection SRSV?
Which aspect enhances the utility of Cisco Unity Connection SRSV?
Signup and view all the answers
What port is used for SFTP connections in the Disaster Recovery Framework?
What port is used for SFTP connections in the Disaster Recovery Framework?
Signup and view all the answers
What service account is associated with the DHCP/BootP client connections?
What service account is associated with the DHCP/BootP client connections?
Signup and view all the answers
Which protocol is specified for performing backups and restorations in the framework?
Which protocol is specified for performing backups and restorations in the framework?
Signup and view all the answers
Which of the following actions does the Disaster Recovery Framework NOT perform?
Which of the following actions does the Disaster Recovery Framework NOT perform?
Signup and view all the answers
What is the purpose of UDP port 67 in the context of Cisco Unity Connection?
What is the purpose of UDP port 67 in the context of Cisco Unity Connection?
Signup and view all the answers
Which protocol is NOT listed for securing transport layers in Cisco Unity Connection?
Which protocol is NOT listed for securing transport layers in Cisco Unity Connection?
Signup and view all the answers
In the installation framework, what happens when an SFTP server is specified?
In the installation framework, what happens when an SFTP server is specified?
Signup and view all the answers
Which of the following services is indicated for making DHCP connections?
Which of the following services is indicated for making DHCP connections?
Signup and view all the answers
What is the primary function of SFTP connections in the Disaster Recovery Framework?
What is the primary function of SFTP connections in the Disaster Recovery Framework?
Signup and view all the answers
For which operation is port 22 primarily designated in the content provided?
For which operation is port 22 primarily designated in the content provided?
Signup and view all the answers
Study Notes
IP Communications Required by Cisco Unity Connection Service Ports
-
Table 1: TCP and UDP Ports Used for Inbound Connections to Cisco Unity Connection details TCP and UDP ports for inbound connections to the Cisco Unity Connection server, and internal ports used by Cisco Unity Connection.
-
Ports and protocols, operating system, firewall settings, executable/service or application, service account, and comments are included for each port.
-
TCP: 20500, 20501, 20502, 19003, 1935: Open only between servers in a Unity Connection cluster; port 1935 is blocked and for internal use only.
-
TCP: 21000-21512: Open. Servers in a Unity Connection cluster must connect to each other. IP phones must connect to this range of ports on the Unity Connection server for some phone client applications.
-
TCP: 5000: Open, used for port-status monitoring.
-
TCP and UDP ports allocated by administrator for SIP traffic. Possible ports are 5060-5199.
-
TCP: 20055: Open only between servers in a Unity Connection cluster.
-
TCP: 1502, 1503 ("ciscounity_tcp" in /etc/services): Open only between servers in a Unity Connection cluster.
-
TCP: 143, 993, 7993, 8143, 8993: Open, for IMAP inbox access and IMAP over SSL inbox access.
-
TCP: 25, 8025, 4904, 4900: 4904, UDP: 16384-21511, UDP: 7774-7900, TCP: 22000, UDP: 22000, TCP: 22001, UDP: 22001, TCP: 20532, TCP: 22, UDP: 161 various ports and protocols for different functions.
-
TCP: 5007, TCP: 1500, 1501, TCP: 1515, TCP: 8001, TCP: 2555, 2556, TCP: 1090, 1099, TCP: 80, 443, 8080, 8443, TCP: 8081, 8444, TCP: 25, 587, UDP: 21, TCP: 22 (SSH/SFTP)
-
UDP: 500, UDP: 9291, UDP: 6080 specific ports and protocols are also described here for inbound connections.
-
UDP: 50- 5004, 8005, UDP: 16384-32767, UDP: 69, UDP: 53, UDP: 123 described various ports and protocols.
-
TCP: 7080 and UDP: 9291 and UDP:6080 described specific connections required by Unity Connection.
Preventing Toll Fraud
- Toll fraud is defined as any long-distance call at the expense of an organization.
- Restriction tables in Cisco Unity Connection help prevent toll fraud by controlling which phone numbers can be used for call transfers, message notifications, and other Unity Connection functions.
- Best practices include blocking calls to the international operator, matching trunk access codes for different phone system integrations, and blocking calls to international numbers for users who don't need them.
Cisco Unity Connection - Restricted and Unrestricted Version
- This product contains cryptographic features that are subject to U.S. and local country laws.
- Restricted and unrestricted versions of Cisco Unity Connection software exist to address import requirements for some countries that involve encryption.
- Functionality is available in the restricted version whereas this functionality is disallowed in the unrestricted version.
Securing the Connection between Cisco Unity Connection, Cisco Unified Communications Manager, and IP Phones
- The connection between Unity Connection, Cisco Unified Communications Manager, and IP phones can be vulnerable to man-in-the-middle attacks, network traffic sniffing, and identity theft.
- Unity Connection requires secure communication mechanisms are described
- Signaling authentication
- Device authentication
- Signaling encryption
- Media encryption
Enhanced Security Mode in Cisco Unity Connection
- Enhanced Security Mode employs secure communication mechanisms, password requirements are stricter,
- Remote audit logging is enabled.
- The maximum number of concurrent sessions is restricted on each interface (e.g., Telephony, IMAP).
- User inactivity timeout is configured to disable inactive accounts.
Passwords, PINs, and Authentication Rule Management
- Authentication rules govern passwords, PINs, and account lockouts for all user accounts.
- Recommendations include frequent password changes, unique passwords, and non-trivial passwords.
- Best practices include requiring password changes every six months, using strong passwords, and appropriate lockout policies.
Using SSL to Secure Client/Server Connections
- Using SSL or TLS ensures secure client/server communication.
- A self-signed certificate or a certificate from a trusted Certificate Authority (CA) secures connections between the Cisco PCA, IMAP clients, and Cisco Unity Connection SRSV.
Securing User Messages
- Users can control who can access their messages and their distribution to protect sensitive data.
- Options are available to prevent users from saving messages locally or archiving securely.
Next Generation Security
- The product implements Suite B cryptographic algorithms (e.g., AES encryption and ECDSA ciphers) for improved security.
- It supports HTTPS, SIP and SRTP interfaces for secure communications.
Studying That Suits You
Use AI to generate personalized quizzes and flashcards to suit your learning preferences.
Related Documents
Description
Test your knowledge on the IP communications required by Cisco Unity Connection. This quiz covers essential TCP and UDP ports, their purposes, and configurations necessary for optimal functionality within a Unity Connection cluster. Prepare to dive into technical specifics of service ports used for inbound connections.