Parameter Configuration For Secure Installation - Avaya J129 Installing And Administering

Hide thumbs Also See for J129:
Table of Contents

Advertisement

Security

Parameter configuration for secure installation

For secure installation, configure the following parameters.
Parameter
TRUSTCERTS
TLSSRVRID
AUTH
SSH_ALLOWED
SCEP parameters
Configure the following Simple Certificate Enrollment Protocol (SCEP) parameters.
The SCEP parameters are not supported in IP Office environment.
Parameter
MYCERTURL
MYCERTCN
MYCERTDN
MYCERTKEYLEN
MYCERTRENEW
September 2017
Set to
Notes
Provides the file names of certificates to be used for authentication. It
supports both root and intermediate certificates and can contain up to
six certificate files.
1
Certificates installed on the servers must have the common name
that matches the device configuration.
1
Ensures usage of HTTPS file servers for configuration and software
files download. Once AUTH is set to 1 and the device downloads the
trusted certificates, the device can only download files from HTTPS
server with certificates that can be validated using trusted certificate
repository.
0
To keep SSH disabled.
Type
Default
Description
value
String
Null
Specifies the URL to access Simple Certificate Enrollment
Protocol (SCEP) server. The device attempts to contact
the server only if this parameter is set to other than its
default value.
String
$SERIA
Specifies the Common name (CN) for SUBJECT in SCEP
LNO
certificate request. The values can either be $SERIALNO
or $MACADDR.
If the value includes the string $SERIALNO, that string will
be replaced by the phones serial number.
If the value includes the string $MACADDR, that string will
be replaced by the phones MAC address.
String
Null
Specifies common part of SUBJECT in SCEP certificate
request. This value defines the part of SUBJECT in a
certificate request including Organizational Unit,
Organization, Location, State, and Country that is common
for requests from different devices.
Numeric
2048
Specifies the private key length in bits to be created in the
device for a certificate enrollment. The range is from 1024
to 2048.
Numeric
90
Specifies the percentage used to calculate the renewal
time interval out of the device certificate's Validity Object. If
Installing and Administering Avaya J129 IP Phone
Comments on this document? infodev@avaya.com
Table continues...
56

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents