โ† All ACA Flashcard Decks

Security & Authentication in VoIP Flashcards

6 cards from real ACA practice questions. Tap to flip, then mark Knew It or Still Learning โ€” missed cards come back until you master them.

Read the first 6 Security & Authentication in VoIP flashcards as text
  1. Which AudioCodes mechanism prevents toll fraud by limiting the number of concurrent calls from a single SIP registration?

    Answer: Call Admission Control (CAC) per IP Group or User

    CAC policies on IP Groups or per-user limits prevent a single account from being used to place an excessive number of simultaneous calls, limiting toll fraud blast radius.

  2. What is 'SIP Over WebSocket (WSS)' and why is it relevant to AudioCodes deployments?

    Answer: A transport for SIP signaling over encrypted WebSocket connections, enabling browser-based WebRTC clients to connect to AudioCodes SBCs

    SIP over WSS tunnels SIP signaling in encrypted WebSocket connections, allowing WebRTC browsers and web-based clients to register and call through an AudioCodes SBC.

  3. In AudioCodes security configuration, what does enabling 'OCSP (Online Certificate Status Protocol)' provide?

    Answer: Real-time verification that a TLS certificate has not been revoked before accepting a TLS connection

    OCSP allows the device to query a CA's OCSP responder in real time to check if a presented TLS certificate is still valid and has not been revoked.

  4. Which AudioCodes feature can detect when an incoming SIP REGISTER request uses a spoofed 'From' header and block it?

    Answer: SIP Sanity Checks / Malformed SIP detection

    AudioCodes SBC performs SIP sanity checking to detect malformed, inconsistent, or spoofed SIP headers, dropping messages that fail validation before they can affect call processing.

  5. What does 'DTLS-SRTP' key exchange provide compared to SDES?

    Answer: DTLS-SRTP exchanges keys directly in the media plane using DTLS without depending on SIP TLS, providing independent media-layer security

    DTLS-SRTP negotiates SRTP keys via a DTLS handshake on the media port itself, making the encryption independent of SIP signaling security and aligning with WebRTC requirements.

  6. Which log level should be used on an AudioCodes Mediant during a security investigation to capture detailed SIP message content?

    Answer: Debug (level 7)

    Setting the syslog level to Debug (7) captures full SIP message details including all headers and body content, essential for security forensics and intrusion analysis.