The Net-Net SBC and TLS

Transport Layer Security (TLS) on the Oracle® Enterprise Session Border Controller E-SBC) depends on the presence of the Security Service Module (SSM) for hardware acceleration of encryption and decryption and random media generation. The SSM module is a plug-in that you can add to the E-SBC chassis given the installation of the necessary boot loader and minimum hardware revision levels.

With the required hardware revision levels, qualified field personnel can add the plug-in unit to the E-SBC onsite. This provision makes upgrades fast, and means that you do not need to return the E-SBC to Oracle manufacturing for a hardware upgrade. When you upgrade the E-SBC with the SSM card that supports TLS, field personnel will affix a new CLEI code label to the Oracle chassis. The code will also appear on the SSM card (also referred to as the plug-in unit) and is visible when the system’s chassis cover is opened. On a new E-SBC provisioned with the SSM card, the code labels are already affixed in all required locations.

With the SSM card installed on the E-SBC, TLS support is enabled and the SSM accelerator performs:

  • RSA
  • Diffie-Hellman
  • DES
  • 3DES
  • AES256
  • Random number generation