Cisco TelePresence Administrator's Manual page 67

Video communication server
Hide thumbs Also See for TelePresence:
Table of Contents

Advertisement

Field
Description
Telnet service Determines whether the VCS
can be accessed via Telnet.
Default is Off.
SSH service
Determines whether the VCS
can be accessed via SSH
and SCP. Default is On.
Web interface
Determines whether the VCS
(over HTTPS)
can be accessed via the web
interface. Default is On.
Client
Controls the level of security
certificate-
required to allow client
based
systems (typically web
security
browsers) to communicate
with the VCS over HTTPS.
Not required: the client
system does not have to
present any form of
certificate.
Certificate validation: the
client system must present a
valid certificate that has
been signed by a trusted
certificate authority (CA).
Note that a restart is required
if you are changing from Not
required to Certificate
validation.
Certificate-based
authentication: the client
system must present a valid
certificate that has been
signed by a trusted CA and
contains the client's
authentication credentials.
Default: Not required
Cisco VCS Administrator Guide (X7.2)
Usage tips
TMS accesses the VCS via the web server. If HTTPS mode is
turned off, TMS will not be able to access it.
Important:
Enabling Certificate validation means that your browser can use
the VCS web interface only if it has a valid client certificate
signed by a CA in the VCS's trusted CA certificate list.
Ensure your browser (the client system) has a valid (in date
n
and not revoked by a CRL) client certificate before enabling
this feature. The procedure for uploading a certificate to your
browser may vary depending on the browser type and you
may need to restart your browser for the certificate to take
effect.
You can upload CA certificates on the
n
page, manage client certificate revocation lists on the
management
page, and test client certificates on the
certificate testing
page.
Enabling Certificate-based authentication means that the
standard login mechanism is no longer available. You can log
in only if your browser certificate — typically provided via a
smart card (also referred to as a Common Access Card or CAC)
— is valid and the credentials it provides have the appropriate
authorization levels. You can configure how the VCS extracts
credentials from the browser certificate on the
authentication configuration
Note that this setting does not affect client verification of the
VCS's server certificate.
Network and system settings
Trusted CA certificate
Certificate-based
page.
Page 67 of 498
CRL
Client

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Telepresence x7.2

Table of Contents