Securing Connections To The Xt Series Using Tls - Avaya Scopia XT Series Deployment Manual

Video collaboration solution for ip office
Hide thumbs Also See for Scopia XT Series:
Table of Contents

Advertisement

Securing Connections to the XT Series Using TLS

You can configure your video network devices, both Equinox Solution and third-party, to support
Transport Layer Security (TLS) for the SIP protocol and for connection to the XT Series web
server when using HTTPS.
Important:
Using encryption is subject to local regulation. In some countries it is restricted or limited for
usage. For more information, consult your local reseller.
TLS enables network devices to communicate securely using certificates, to provide
authentication of the devices and encryption of the communication between them.
To create a TLS or HTTPS web certificate, you need to generate a certificate signing request
(CSR) and send it to the certification authority (CA) for signing. A CA has its own certificate,
known as the CA root certificate. When the CA signed certificate is ready, you upload it into the XT
Series for which it was created, together with the CA root certificate. Once this is done, the
component can authenticate itself and is ready for TLS connection.
Each time a video network device starts the TLS communication session, it sends its own signed
certificate together with the CA root certificate and requests the same certificates from the other
devices to which it wants to connect. After both devices verify each other's identity, a secure TLS
connection can be established. Exchanging certificates between devices is part of the TLS
protocol; it happens in the background and is transparent to a user.
XT Series supports a standard called 802.1x EAP TLS. 802.1x is an Institute of Electrical and
Electronics Engineers (IEEE) standard that provides an authentication framework for WLANs.
802.1x uses the Extensible Authentication Protocol (EAP) to exchange messages during the
authentication process. Several authentication protocols that operate inside the 802.1x framework
are suitable for wireless networks. These protocols allow the network to authenticate the client
December 2017
Figure 138: Establishing TLS connection
Avaya Video Collaboration Solution for IP Office Deployment Guide
Comments on this document? infodev@avaya.com
Securing Connections to the XT Series Using TLS
201

Advertisement

Table of Contents
loading

Table of Contents