In this section:
Scenario
The SBC supports encryption across Network-Network Interfaces.
Background Information
- The requirements specified in the section "Background Information and Dependencies" under Minimal Out-Of-The-Box Configuration are met.
- Ports and IP Interface Groups have been configured as described in NNI: Complex route selection.
Description
Figure 1: SBC support for NNI encryption
- Communication between servers within the core side of the network is typically trusted and usually clear-text/un-encrypted, even if it was originally encrypted at the edge.
- On the interconnect side of the SBCs, the remote peers may or may not be trusted. Some interfaces maybe in clear text/un-encrypted, others may use IPsec or TLS to protect the interface. Scaling is much less of a concern than at the access side as there are typically far fewer peers.
Overview
Content Tools