The Net-Net SBC and TLS

Transport Layer Security (TLS) on the Oracle Communications Session Border Controller OCSBC) depends on the presence of the Security Service Module (SSM) for hardware acceleration of encryption and decryption and random media generation. The SSM module is a plug-in that you can add to the OCSBC chassis given the installation of the necessary boot loader and minimum hardware revision levels.

With the required hardware revision levels, qualified field personnel can add the plug-in unit to the OCSBC onsite. This provision makes upgrades fast, and means that you do not need to return the OCSBC to Oracle manufacturing for a hardware upgrade. When you upgrade the OCSBC with the SSM card that supports TLS, field personnel will affix a new CLEI code label to the Oracle chassis. The code will also appear on the SSM card (also referred to as the plug-in unit) and is visible when the system’s chassis cover is opened. On a new OCSBC provisioned with the SSM card, the code labels are already affixed in all required locations.

With the SSM card installed on the OCSBC, TLS support is enabled and the SSM accelerator performs:

  • RSA
  • Diffie-Hellman
  • DES
  • 3DES
  • AES256
  • Random number generation