1.1.3.7 Ensure require encryption for 3rd party endpoints (SIP/H.323) is set to enabled

Information

By default, Zoom requires encryption for all data transferred between the Zoom cloud, Zoom client, and Zoom Room. Turn on this setting to require encryption for 3rd party endpoints (SIP/H.323) as well.

Rationale:

Solution

Go into the Zoom Admin Dashboard on the zoom website. Account Management -> Account Settings -> Meeting -> In Meeting (Basic) -> Require encryption for 3rd party endpoints (SIP/H.323) and ensure it is enabled.

See Also

https://workbench.cisecurity.org/files/2986

Item Details

Audit Name: CIS Zoom L1 v1.0.0

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6, CSCv7|5.1

Plugin: Zoom

Control ID: bd5ef8f70313a42b00eba04fde55bd80b48279fbb42af90bb9d2fb960969bc17