Importante annonce de Microsoft dans le centre de messagerie, a partir du 3 Janvier 2022, les versions TLS 1.0/1.1 ne sera plus supporté pour les interfaces de Direct Routing SIP.
Il sera donc important de s'assurer que vos passerelles SBC soit configuré pour utilisé la version TLS 1.2.
Les passerelles SBC devront supporter les suites cryptographiques suivantes:
- TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 i.e. ECDHE-RSA-AES256-GCM-SHA384
- TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 i.e. ECDHE-RSA-AES128-GCM-SHA256
- TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384 i.e. ECDHE-RSA-AES256-SHA384
- TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256 i.e. ECDHE-RSA-AES128-SHA256
Annonce: MC297438
Description:
To provide the best-in-class encryption to our customers, we will be retiring Transport Layer Security (TLS) versions 1.0 and 1.1 beginning January 3rd 2022 and will begin forcing TLS1.2 usage for the Direct Routing SIP interface.
- To avoid any service impact, please make sure that your SBCs are configured to support TLS 1.2 and are able to connect using one of the following cipher suites:
- TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 i.e. ECDHE-RSA-AES256-GCM-SHA384
- TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 i.e. ECDHE-RSA-AES128-GCM-SHA256
- TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384 i.e. ECDHE-RSA-AES256-SHA384
- TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256 i.e. ECDHE-RSA-AES128-SHA256