nerdexam
Cisco

350-801 · Question #369

Refer to the exhibit. An engineer is integrating Cisco UCM with Cisco Unity Connection via SIP. Which two boxes should be checked to complete the configuration of the SIP trunk security profile? (Choo

The correct answer is A. to enable application-level authorization B. to enable digest authentication. When integrating Cisco UCM with Cisco Unity Connection via SIP, the SIP trunk security profile should enable application-level authorization and digest authentication for secure and proper communication.

Collaboration Applications

Question

Refer to the exhibit. An engineer is integrating Cisco UCM with Cisco Unity Connection via SIP. Which two boxes should be checked to complete the configuration of the SIP trunk security profile? (Choose two.)

Exhibit

350-801 question #369 exhibit

Options

  • Ato enable application-level authorization
  • Bto enable digest authentication
  • Cto accept out-of-dialog refer
  • Dto accept presence subscription
  • Eto accept replaces header

How the community answered

(29 responses)
  • A
    97% (28)
  • D
    3% (1)

Why each option

When integrating Cisco UCM with Cisco Unity Connection via SIP, the SIP trunk security profile should enable application-level authorization and digest authentication for secure and proper communication.

Ato enable application-level authorizationCorrect

Enabling application-level authorization ensures that the Cisco UCM properly authenticates the SIP messages originating from Cisco Unity Connection at the application layer, which is crucial for secure and trusted communication between these two integrated systems. This verifies that the messages come from an an authorized source within the voice infrastructure.

Bto enable digest authenticationCorrect

Enabling digest authentication on the SIP trunk security profile provides a secure method for Cisco UCM to challenge and authenticate Cisco Unity Connection using a shared secret, preventing unauthorized access and ensuring the integrity and confidentiality of the SIP signaling between the two systems. This is a common security mechanism for SIP trunks.

Cto accept out-of-dialog refer

Accepting out-of-dialog REFER messages is typically related to specific call transfer scenarios, not a fundamental security requirement for basic UCM-CUC integration.

Dto accept presence subscription

Accepting presence subscriptions is relevant for presence services, which are generally handled by Cisco IM and Presence, not a core requirement for UCM-CUC SIP trunk integration.

Eto accept replaces header

Accepting Replaces headers is used for specific call transfer or call replacement scenarios, such as when transferring a call or picking up a ringing call from another device, and is not a primary security setting for the trunk itself.

Concept tested: Cisco UCM SIP trunk security profile for CUC integration

Source: https://www.cisco.com/c/en/us/td/docs/voice_ip_comm/connection/12x/install/guide/b_12xcucig/b_12xcucig_chapter_01.html

Topics

#SIP Trunk Configuration#Cisco Unity Connection#Cisco UCM#Security Profile

Community Discussion

No community discussion yet for this question.

Full 350-801 Practice