Certificates - Konftel 800 Installation & Administration

Hide thumbs Also See for 800:
Table of Contents

Advertisement

SECURITY AND PROTECTION

CERTIFICATES

There are several factory-installed security certificates on the Konftel 800. You can
install additional certificates through the centralized configuration server, , SCEP
or manually through the web interface.
Pre-installed certificates
Konftel 800 has a factory-installed device specific private key. You cannot view or
delete this private certificate.
Installable certificates
Certificate configuration files stored on the provisioning server allow you to
automatically download certificate files to Konftel 800. These files are required
for the server validation by the phone and TLS authentication by the server.
The service provider can upload a global certificate configuration file and a device-
specific certificate configuration file.
The default name for the global configuration file is kt800_certcfg.xml. The
default name for the global configuration file is kt800_certcfg-<MAC>.xml,
where <MAC> is the MAC address of the specific phone.
Instead of the .xml file format, the service provider can also use cgi, php, asp,
js, or jsp file formats. Konftel 800 first searches for the configuration file in .xml
format. If the phone fails to find the .xml file on the provisioning server, it searches
for the configuration file in other formats specified above.
The typical certificate configuration file consists of four sections:
802.1x: specifies the 802.1x certification arrangements of the phone.
SIP: contains the Session Initiation Protocol (SIP) certification arrangements of
the phone.
Provisioning: runs through the provisioning server certification arrangements of
the phone.
LDAP: specifies the LDAP server certificate arrangements of the phone.
There is no requirement to populate all four sections in the .xml file. Insert the
data only to the sections used.
Each section includes the following certificate files:
CA certificate
Device certificate
Device private key.
Each section contains the path details for the CA certificate, Device certificate, and
Device private key.
142

Advertisement

Table of Contents
loading

Table of Contents