Managing The Vcs's Server Certificate - Cisco TelePresence Administrator's Manual

Video communication server
Hide thumbs Also See for TelePresence:
Table of Contents

Advertisement

Note: if you have enabled certificate revocation list (CRL) checking for TLS encrypted
LDAP server
(for account authentication), you must add the PEM encoded CRL data to your trusted CA
certificate file.

Managing the VCS's server certificate

The
Server certificate
page
manage the VCS's server certificate. This certificate is used to identify the VCS when it communicates with
client systems using TLS encryption, and with web browsers over HTTPS. You can:
view details about the currently loaded certificate
n
generate a certificate signing request
n
upload a new server certificate
n
Viewing the currently uploaded certificate
The Server certificate data section shows information about the server certificate currently loaded on the
VCS.
To view the currently uploaded server certificate file, click Show server certificate.
n
To replace the currently uploaded server certificate with the VCS's default certificate, click Reset to
n
default server certificate.
Note: do not allow your server certificate to expire as this may cause other external systems to reject your
certificate and prevent the VCS from being able to connect to those systems.
Generating a certificate signing request (CSR)
The VCS can generate server certificate signing requests. This removes the need to use an external
mechanism to generate and obtain certificate requests.
To generate a CSR:
1. Click Generate CSR to go to the
2. Enter the required properties for the certificate.
See
Server certificates and clustered systems
l
The certificate request includes automatically the client and server authentication Enhanced Key
l
Usage (EKU) extension.
3. Click Generate CSR. The system will produce a signing request and an associated private key.
Note that the private key is stored securely on the VCS and cannot be viewed or downloaded.
4. You are returned to the
Download the request to your local file system so that it can be sent to a certificate authority. You are
l
prompted to save the file (the exact wording depends on your browser).
View the current request.
l
When the signed server certificate is received back from the certificate authority it must be uploaded to the
VCS as described below.
Cisco VCS Administrator Guide (X7.2)
(Maintenance > Certificate management > Server
Generate CSR
Server certificate
page. From here you can:
page.
below if your VCS is part of a cluster.
Maintenance
connections to an
certificate) is used to
Page 279 of 498

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Telepresence x7.2

Table of Contents