Siemens HIPATH V1.2.33 Administrator's Manual
Siemens HIPATH V1.2.33 Administrator's Manual

Siemens HIPATH V1.2.33 Administrator's Manual

Optipoint ip phones deployment tool
Table of Contents

Advertisement

Quick Links

HiPath
optiPoint IP Phones
Deployment Tool V1.2.33
Administrator Manual

Advertisement

Table of Contents
loading

Summary of Contents for Siemens HIPATH V1.2.33

  • Page 1 HiPath optiPoint IP Phones Deployment Tool V1.2.33 Administrator Manual...
  • Page 2: Table Of Contents

    Contents Contents Introduction........5 Supported Phones......... . 5 Requirements .
  • Page 3 Contents optiPoint types ......27 optiPoint 400 standard H450 ....... . . 27 optiPoint 400 economy HFA .
  • Page 4 Contents WAP..........52 Parameters .
  • Page 5: Introduction

    Introduction Introduction The purpose of the Deployment Tool is to allow the administrator to re- motely configure optiPoint IP phones en-mass. The primary occasion when this will be done is when a set of new devices is deployed for the first time. However, the tool may be used at any other time as a means of configuring a group of phones with a consistent set of data.
  • Page 6: Requirements

    Introduction Requirements Operating System • Windows 98, ME • Windows NT 4 • Windows 2000 or • Windows XP . Screen Resolution Minimum screen resolution: 1024 x 768 pixels. FTP Service A correctly configured FTP server is always needed for exchanging data us- FTP.
  • Page 7: Installing And Running The Program

    You should always use the latest version of the Deployment Tool. You can download the latest update file (for example fdt_optipoint_1047194.zip) from the following Internet address: → Downloads/Software. http://www.siemens.com/hipath Installing the Program 1. Unpack the file fdt_optipoint_1047194.zip in a random directory. 2. Open the install.htm file in this directory A security warning appears.
  • Page 8: Listing Connected Ip Phones

    Listing Connected IP Phones Listing Connected IP Phones You must identify the phones you want to configure in the Deployment Tool before you can proceed with configuration. A scan function searches the network and creates a list of devices found. You can scan for an IP phone on the basis of its IP address or you can scan an IP address range for optiPoint phones.
  • Page 9: Icons And Buttons

    Listing Connected IP Phones Icons and Buttons On-screen tips explain the meaning of interface icons or buttons when you point directly to an object. The tip appears briefly after two seconds. Icons in the Device_List window For the functions New, Open and Save in the File menu.
  • Page 10: Creating A Device List

    Listing Connected IP Phones Creating a Device List Before searching for optiPoint phones, you must specify the IP addresses in the Add Devices mask. Call with • Add from the Edit menu on the menu bar or • CTRL+A or •...
  • Page 11: Specifying The Number Of Scans

    Listing Connected IP Phones Specifying the Number of Scans You can specify the number of scans for a LAN-based scan or mark the scan as continuous. Select the required option under Scan parameters. You can select the maximum number of scans in the drop-down list or se- lect "Continuous"...
  • Page 12: Moving List Columns

    Listing Connected IP Phones Moving List Columns To move a column in the list, click the column header and, holding the mouse button down, drag the column to the new position. For example, you could move the User ID column right and reposition it beside the Ver- sion column.
  • Page 13 Listing Connected IP Phones Address The meaning of the icons in the address column is as follows: Indicates an individual address. Indicates the lower threshold of an IP address range. Indicates the upper threshold of an IP address range. Indicates a device found. Status The status column can contain the following values: Not scanned...
  • Page 14: Stopping A Scan

    Listing Connected IP Phones Device type The Device type column lists the optiPoint devices each with an assigned icon. This column could look as follows in another network: If you hid the Device type column ( page 11) and the list contains differ- ent device types, the following message will prompt you to display the col- umn after the scan: If you do not display the Device type column, you will be unable to config-...
  • Page 15: Deleting An Entry From The Device List

    Listing Connected IP Phones Deleting an Entry from the Device List If you are unable to configure a device in the list, you can delete this entry. Select the required entry in the list with a click. Delete with • Delete from the Edit menu on the menu bar or •...
  • Page 16: Loading The Deployment File

    Listing Connected IP Phones Loading the Deployment File The Deployment Tool opens with the last deployment file saved and dis- plays the device list with data in the Address and Status columns only. A blank window appears if there is no list available. You can load a specific list if there is more than one saved.
  • Page 17: Configuration

    Configuration Configuration Preparation You can configure a single device or devices that belong to the same de- vice type. Select one or more devices of the same type page 15. These devices should be in Ready status ( page 13). Now, transfer the selected devices to the Operations window: Call with •...
  • Page 18: Starting Configuration

    Configuration Starting Configuration Call with • Configure from the Operations menu on the menu bar or • CTRL+C or • the Configure operations icon on the toolbar ( page 9). The Operations Configuration dialog for this device type appears. It con- tains a number of function-specific tabs.
  • Page 19 Configuration Dialogs for optiPoint telephones Device-type dialogs are provided for the following optiPoint phones: • optiPoint 400 standard Release 3 ( page 27) • optiPoint 410 standard HFA ( page 27) • optiPoint 400 standard SIP V2.3/V2.4/V3.0 ( page 28) •...
  • Page 20: Editing A Configuration

    Configuration Editing a Configuration Call up the configuration of the selected optiPoint type. Before you can en- ter a value in a field in the Setting column, you must mark the matching option in the Parameter column. Values entered in the Setting column are not sent to the devices if you did not mark the matching option in the Pa- rameter column.
  • Page 21 Configuration Reset and delete actions do not effect the phone and are only per- formed locally on the computer. Entries in the dialog only take effect when the data is sent to the de- vices. Saving settings Save your settings with Save or Save as... before you send the configura- tion to the devices.
  • Page 22: Transferring A Configuration

    Configuration The software update activates a timer. This timer is needed to de- termine the update status. The timer has different runtimes depending on the telephone type. • 3 minutes for: optiPoint 400 standard optiPoint 400 standard HFA optiPoint 400 advance HFA optiPoint 400 economy HFA optiPoint 400 standard SIP optiPoint 410 standard HFA...
  • Page 23 Configuration Call with • Enter admin password from the Operations menu on the menu bar or • CTRL+P The following dialog appears: Enter the password (default is 123456) and confirm your entry with OK. Starting transfer Start with • Start from the Operations menu on the menu bar or •...
  • Page 24: Saving And Loading Device Groups

    Configuration Saving and Loading Device Groups Once you have selected a device group, you can save it in a Batch File. At a later stage, you can select and further process this particular device group via the Batch File in the device list. The following shows some of the device groups available in the Opera- tions window.
  • Page 25: Loading Device Groups

    Configuration Select a directory and assign a name to the Batch File. Then click Save. You can create several Batch Files for different groups. Loading Device Groups Create a device list or ( page 10) load a deployment file ( page 16) and execute a scan page 12).
  • Page 26 Configuration The relevant device group is automatically selected for further processing in the device list.
  • Page 27: Optipoint Types

    optiPoint types optiPoint types optiPoint 400 standard H450 (Device type: 400standardH450) Settings are made in the following tabs: • Passwords page 45 • File Transfer page 38 • IP Routing page 41 • Country & Language page 37 • Dialling Codes page 37 •...
  • Page 28: Optipoint 400 Standard Sip

    optiPoint types optiPoint 400 standard SIP (Device type: 400 standard SIP V2.3) Settings are made in the following tabs: • Audio/Visual Indications page 36 • Function Keys page 40 • Selected_Dialing page 48 • Country & Language page 37 • SNMP page 48 •...
  • Page 29 optiPoint types (Device type: 400standardSIP V3.0) Settings are made in the following tabs: • Passwords page 45 • File Transfer page 38) • IP Routing page 42 • Country & Language page 37 • Quality of Service page 47 • Selected_Dialing page 48 •...
  • Page 30: Optipoint 410 Entry Hfa, 410 Economy Hfa

    optiPoint types optiPoint 410 entry HFA, 410 economy HFA (Device type: 410entryHFA, 410economyHFA) Settings are made in the following tabs: • Speech parameters page 49 • Telephony Configuration page 50 • Quality of Service page 47 • SNMP page 48 •...
  • Page 31: Optipoint 600 Office Hfa

    optiPoint types optiPoint 600 office HFA (Device type: 600officeHFA) Settings are made in the following tabs: • Passwords page 45 • Dialling Codes page 37 • File Transfer page 39 • IP Routing page 43 • Quality of Service page 47 •...
  • Page 32: Optipoint 600 Office Sip

    optiPoint types optiPoint 600 office SIP (Device type: 600officeSIP V2.3) Settings are made in the following tabs: • Passwords page 45 • Dialling Codes page 37 • File Transfer page 39) • IP Routing page 43 • Country & Language page 37 •...
  • Page 33: Help Functions

    Help Functions Help Functions Checking the Status The status is displayed in the header of the Device_List window before, during, and after the scan. Before the scan (example) During the scan (example) After the scan (example)
  • Page 34: Status Messages

    Help Functions Status Messages The following status messages may appear: Ready for operations: Number of devices available. Connecting... The tool is setting up a connection. Failed to connect The tool was unable to connect to the server. Server busy Device configuration is already active. Server down The server is unavailable.
  • Page 35: Log File

    Help Functions Log File Click Log. The window changes to display the current log file. This file is automatically created and features the current system time in its name, for example 05_Aug_2003-10_58_30.log. You can use the current log file or create a new one for the next scan. To create a new log file, close the current file with Close log file from the File menu on the menu bar.
  • Page 36: Configuration Tab

    Configuration Tab Configuration Tab Alert Indications Alert Indications (400 standard SIP V2.4, 600 office SIP V2.4) Parameter Setting Alert (1 to 15) page 53 Tag (1 to 15) page 69 Ringer Melody (1 to 15) page 64 Ringer Sequence (1 to 15) page 64 Tone_Duration (secs) (1 to 15) page 69...
  • Page 37: Country & Language

    Configuration Tab Country & Language Country & Language (400 standard H450, 400 standard SIP V2.x/ SIP V3.0, 600 office SIP V2.x) Parameter Setting Language page 60 Country page 55 Dialling Codes Dialling Codes (400 standard H450, 410 standard HFA, 410 advance HFA, 600 office HFA, 600 office U P0/E 600 office SIP V2.x) Parameter...
  • Page 38: File Transfer

    Configuration Tab File Transfer You can read out the current software version used by your optiPoint phones directly at the device or over the phone’s Web server. File Transfer (400 economy HFA, 400 standard HFA, 410 entry HFA, 410 economy HFA) Parameter Setting FTP Server Address...
  • Page 39 Configuration Tab File Transfer (410 standard HFA, 410 advance HFA) Parameter Setting FTP Server Address page 57 FTP account page 57 FTP username page 58 FTP password page 57 Software filename page 68 DSM application filename page 57 Screen saver filename page 65 LDAP filename page 61...
  • Page 40: Function Keys

    Configuration Tab Function Keys Function Keys (400 standard H450, 400 standard SIP V2.x/SIP V3.0, 600 office SIP V2.x) Parameter Setting Key (1 to 10 or 17) page 60 HTTP Settings HTTP Settings (410 standard HFA, 410 advance HFA, 600 office HFA) Parameter Setting HTTP gateway/proxy address...
  • Page 41: Ip Routing

    Configuration Tab IP Routing IP Routing (400 standard H450) Parameter Setting DHCP page 56 Default gateway page 56 Route 1 page 65 Gateway 1 page 58 Mask 1 page 62 Route 2 page 65 Gateway 2 page 58 Mask 2 page 62 LAN port mode page 60...
  • Page 42 Configuration Tab IP Routing (400 economy HFA, 400 standard HFA, 410 entry HFA, 410 economy HFA, 410 standard HFA, 410 advance HFA, 400 standard SIP V2.x/SIP V3.0) Parameter Setting DHCP page 56 Default gateway page 56 Route 1 page 65 Gateway 1 page 58 Mask 1...
  • Page 43: Kerberos

    Configuration Tab IP Routing (600 office HFA, 600 office U , 600 office SIP V2.x) P0/E Parameter Setting DHCP page 56 Default gateway page 56 Route 1 page 65 Gateway 1 page 58 Mask 1 page 62 Route 2 page 65 Gateway 2 page 58 Mask 2...
  • Page 44: Keyset Operations

    Configuration Tab Keyset Operations Keyset Operations (400 standard SIP V2.4, 600 office SIP V2.4) Parameter Setting Originating line preference page 62 Terminating line preference page 69 Line Key action mode page 61 Registration LEDs page 64 Rollover type page 65 Server type page 66 Key &...
  • Page 45: Miscellaneous

    Configuration Tab Miscellaneous Miscellaneous (410 standard HFA, 410 advance HFA) Parameter Setting Help Internet URL page 58 Passwords Passwords (400 standard H450, 400 standard HFA, 400 economy HFA, 400 standard SIP 2.x/SIP 3.0) Parameter Setting Admin password page 53 Passwords (410 etry HFA, 410 economy HFA, 410 standard HFA, 410 advance HFA) Parameter Setting...
  • Page 46: Personal Directory

    Configuration Tab Personal Directory Personal Directory (600 office HFA, 600 office U P0/E 600 office SIP V2.x) Parameter Setting Server address page 57 File path page 57 Filename page 57 Username page 58 Password page 57 Account name page 53 Import personal directory page 59 Presence...
  • Page 47: Quality Of Service

    Configuration Tab Quality of Service Quality of Service (400 standard H450, 400 standard HFA, 400 economy HFA, 410 entry HFA, 410 economy HFA, 410 standard HFA, 410 advance HFA, 600 office HFA, 400 standard SIP V2.x/SIP V3.0, 600 office SIP V2.x) Parameter Setting Layer 3...
  • Page 48: Selected_Dialing

    Configuration Tab Selected_Dialing Selected_Dialing (400 standard H450, 400 standard SIP V2.3/ SIP V3.0, 600 office SIP V2.3) Parameter Setting Key 1 to 10 or 17 page 60 SIP Feature Configuration SIP Feature Configuration (400 standard SIP V2.4, 600 office SIP V2.4) Parameter Setting Group pickup URI...
  • Page 49: Speech Parameters

    Configuration Tab Speech parameters Speech parameters (400 standard H450, 400 standard HFA, 400 economy HFA, 600 office HFA) Parameter Setting Audio mode page 54 Jitter buffer page 59 Not for 600 office HFA. Speech parameters (410 entry HFA, 410 economy HFA, 410 standard HFA, 410 advance HFA) Parameter Setting...
  • Page 50: Telephony Configuration

    Configuration Tab Telephony Configuration Telephony Configuration (400 standard H450) Parameter Setting System type page 69 Gatekeeper address page 58 Gatekeeper id page 58 H323 gateway address page 58 Gatekeeper discovery address page 58 Mobility page 62 Emergency number page 57 H450 features page 58 Security profile...
  • Page 51 Configuration Tab Telephony Configuration (400 standard SIP V2.x/SIP V3.0, 600 office SIP V2.x) Parameter Setting SIP Routing Model page 67 SIP Transport page 67 Register by name page 64 Outbound proxy page 62 SIP Server Address page 67 SIP Server Port page 67 SIP Gateway Address page 66...
  • Page 52: Time

    Configuration Tab Time Time (400 standard H450, 400 standard SIP V2.x/SIP V3.0, 600 office SIP V2.x) Parameter Setting SNTP server address page 68 Timezone offset page 69 Daylight saving page 55 Time page 69 WAP (410 standard HFA, 410 advance HFA, 600 office HFA, 600 office U , 600 office SIP V2.x) P0/E...
  • Page 53: Parameters

    Parameters Parameters Description Account name Name of the FTP account requested by certain FTP servers. Actions You can select one of the following two options for Actions: • Factory reset, to revert to the factory settings. • Clear user data, to delete the user data only. Admin Contacts Provides users with the "Contacts"...
  • Page 54 Parameters Area code Enter your area code here, for example 089 for Munich. Audio Mode The following modes can be set: • G.711 Preferred • Compressed Codec Preferred ( "page"55) • Compressed Codec Always ( "page"55) Auto answer Auto answer. You can enable or disable this function. Auto reconnect This function allows you to reconnect calls automatically.
  • Page 55 Parameters Codec • Select the audio transfer principle you want use here. Codec Audio Mode High Quality Uncompressed voice Use uncompressed voice Preferred transmission. transmission ( G.711, G.722). Suitable for broadband intranet connec- tions. Low Bandwidth Use compressed Suitable for connections Preferred voice transmission with different bandwidth...
  • Page 56 Parameters Default domain name Enter your Domain name here. Default Gateway • Enter the IP Address that was assigned to your PBX in the De- fault Gateway provided this value was not assigned dynamically by a DHCP server. • If the value was assigned dynamically, it is read-only here. DHCP •...
  • Page 57: Server Address

    Parameters DSM application filename • Can only be configured for optiPoint 410 standard/advance and is only necessary if you are using an optiPoint 410 Display Module. • Enter the name of the file containing the optiPoint 410 Display Module software. •...
  • Page 58: Username

    Parameters FTP username • Enter the name that was set in the FTP server as the user for ac- cessing this server. • The name must match the FTP password. • Possible values: 1 to 24 characters. Gatekeeper address Enter the IP address of the Gatekeeper if known (otherwise it is entered by "autodiscovery").
  • Page 59: Import Personal Directory

    Parameters Import personal directory This option must be marked if you want to transfer a specified file with a personal directory to the telephones. IM Session Timer • Contains the length of time for which the EPID address of an instant message is valid.
  • Page 60 Parameters A programmable key can be assigned a function or a speed dial number. Some keys have already been programmed, for example, with the func- tions "Disconnect" or "Loudspeaker". You can use up to 17 keys depending on the phone type. You can assign keys in the Selected_Dialing tab or the Function Keys tab.
  • Page 61 Parameters Layer 2 Priority • You can only set this if Layer 2 support is active ( QoS L2/L3). • You can set a priority value between 0 and 7 for each of the 64 positions here (priority 7: high, 0: low). •...
  • Page 62 Parameters Loge filename Enter the filename of the logo (for example logo of your company) which should be shown on the disply. Mask Enter the value for the network mask for Mask 1 or 2. In general, this is 255.255.255.0. Message centre Call number of a phone messaging system.
  • Page 63: Presence Publishing

    Parameters PBX/Gateway Address Enter the IP address of the PBX where you want to operate the op- tiPoint or alternatively the IP address of the gateway. Set the type used. You can only change the E.164 address by editing "E.164" directly in the "Operations"...
  • Page 64 Parameters PSTN acces code Access code for the PSTN telephone network. QoS L2/L3 • The settings are based on the QoS areas Layer 2 and Layer 3 that control the prioritization of transmitted data. • Layer 2 Priority and Virtual LAN ID ( VLAN ID) can be modified for layer 2.
  • Page 65: Ring Seen Timer (Secs)

    Parameters Ring No Reply Timer Configurable time in seconds after which the ringing status is displayed for a telephone. When the phone rings, its status is IDLE until the Ring Seen Timer expires. Once the timer has expired, the telephone displays its "Ringing"...
  • Page 66 Parameters Security profile You should define the Security protocol setting if the optiPoint 400 stan- dard is connected to a HiPath 5000 system. Three settings are available: • off (voice encryption is disabled). • reduced (voice encryption on one side only – Gatekeeper encrypts data sent).
  • Page 67 Parameters SIP Registrar Address Enter the corresponding IP Address here. SIP Registrar Port Enter the Port number for communicating with the SIP Registrar. SIP Routing Model Enter the preferred routing model here. The default value is server mode. In server mode the telephone uses the IP Address entered to log on to the SIP server.
  • Page 68 Parameters SNMP Trap IP Address This is the IP address of the SNMP Manager to which the telephone re- ports every new start. This is known as a Trap listener address. • If an SNMP server is available in the network, enter the IP Ad- dress of this server here.
  • Page 69 Parameters System type • Enter HiPath GK if the system environment is HiPath 5000. • Enter Non-HiPath GK if you are using a third-party Gatekeeper. • Enter Gateway if you are using a HiPath HG 1500. • Enter Direct if you are using IP dialing and no Gatekeeper.
  • Page 70: Unused Timer (Secs)

    Parameters Transfer file This option must be marked if you want to transfer a specified file to the telephones or from the telephones. Mark the appropriate options in the fol- lowing selection. • DL Application • DL Config file • UL Config file •...
  • Page 71 Parameters User password Reset the user password. This option allows the administrator to delete a user’s forgotten password and replace it with a new password. Default: blank VLAN Id • The virtual LAN ID can only be set if Layer 2 support is activated QoS L2/L3).
  • Page 72: Abbreviations And Technical Terms

    Abbreviations and Technical Terms Abbreviations and Technical Terms You will find additional information in the relevant literature on network technology and VoIP. Default Route A default route is a route that is suitable for every destination address. In other words, the route can be used for every destination address. The de- fault route has the lowest priority and is only used if no other routes are suitable.
  • Page 73 Abbreviations and Technical Terms E.164 Standardized call numbers according to the ITU’s international numbering plan with up to 15 digits. Usually composed of the parts: Country Code (CC), National Destination Code (NDC) and Subscriber Number (SN). EPID Abbreviation of End Point IDentifier. Hardware address of an incoming message.
  • Page 74 Abbreviations and Technical Terms H.323 Standard Consist of the following components (minimum): • Terminals • Gateways • Gatekeeper • Multipoint Control Units ( MCUs) Abbreviation of "Hicom Feature Access“ or "HiPath Feature Access“ . Represents the gateway-based connection (for example HG 1500 or HG 3530) between IP telephony and a PBX.
  • Page 75 Abbreviations and Technical Terms Kerberos Kerberos is an authentication mechanism. This security system uses sym- metric, cryptographic encryption procedures to provide secure authentica- tion in TCP/IP data traffic. The Kerberos program is used to encrypt private data and eliminates the interception or falsification of keys or data by coding the information using the DES algorithm.
  • Page 76 Abbreviations and Technical Terms Mask The subnet mask classifies networks as A, B, and C networks. Each class is associated with a subnet mask that hides the relevant bits. 255.0.0.0 for class A, 255.255.0.0 for class B, and 255.255.255.0 for class C. There are IP Addresss available in a class C network, for example.
  • Page 77 Abbreviations and Technical Terms Password Meaning HiPath Password Protects the settings for communication with other HiPath devices. SNMP Password Protects against unauthorized access to the SNMP server for fault evaluation. Subscriber Password Protects against unauthorized access to the subscriber number of the optiPoint phone. Abbreviation of "Private Branch eXchange."...
  • Page 78 Abbreviations and Technical Terms Abbreviation of "Read Only Memory." Memory with read-only access. Router Routers set up connections to gateways and have access to multiple sub- nets and other routers. A router uses the IP address to determine the sub- net or router to which it should send data.
  • Page 79 Abbreviations and Technical Terms Stands for User Datagram Protocol and can be used instead of TCP if reliability is not an issue. UDP does not guarantee that packets will be de- livered, nor does it ensure that packets will arrive in a certain order. Abbreviation of Uniform Resource Identifier.
  • Page 80 Abbreviations and Technical Terms VoIP Abbreviation of "Voice over IP ." This means Voice transmission with IP technology. Abbreviation of "Wireless Application Protocol." Synonym for graphic applications on mobile phones, organizers and other suitable terminals, transferred using the protocol of the same name. Abbreviation of "Wireless Session Protocol."...
  • Page 81: Administration Scenarios

    Administration Scenarios Administration Scenarios Configuring an FTP Server There are various ways of uploading or downloading data for the optiPoint device: • using the telephone, • using a Web interface in an Internet browser (for example Internet Explorer 6.0), • using the "Deployment Tool.
  • Page 82 Administration Scenarios 4. Confirm with OK. The connection data appears in the program’s main window as soon as data has been exchanged.
  • Page 83: Deployment Tool With Tls

    Deployment Tool with TLS Deployment Tool with TLS The following is an attempt to explain briefly how TLS (Transport Layer Se- curity) works and how IP phones use it. In particular, it explains the central role of certificates. Public Key (Asymmetric) Cryptography Two parties A and B wish to communicate with each other.
  • Page 84: Tls

    Deployment Tool with TLS TLS (Transport Layer Security) allows the encryption of existing protocols over TCP , and allows the two parties of a connection to validate each oth- er's identity. For efficiency, symmetric ciphers are used to encrypt the data sent, each party using the same key to encrypt and decrypt data.
  • Page 85: Use Of Tls By An Ip Phone

    Deployment Tool with TLS Use of TLS by an IP Phone An IP Phone contains both a TLS server and a TLS client. The TLS server is used with the phone's webserver and the phone's XML management in- terface. The TLS client is used with the phone's telephony client. (The PC's telephony server contains a TLS server, while the PC's web client and XML management client are TLS clients).
  • Page 86: Configuring The Deployment Tool For Tls

    Deployment Tool with TLS Configuring the Deployment Tool for TLS Press the button denoted by the Certificate Icon on the Operations Pane to view the TLS Configuration Dialogue. The left-side of the dialogue shows a list of the various trusted CA certifi- cates held by the Deployment Tool to authenticate phones.
  • Page 87: Installing The Deployment Tool

    Deployment Tool with TLS Installing the Deployment Tool After a first installation, the Deployment Tool will automatically be config- ured with trusted certificates and a subject DN that match the phone’s de- fault key material. No configuration should be necessary until the phone’s key material is changed, by transferring new key material over the XML management interface.
  • Page 88: Transferring Certificates To Phones

    Deployment Tool with TLS At the top of the dialogue, an error message informs the user of one of two scenarios: • The Tool was unable to find a suitable end-entity certificate. This may mean that the received certificates were all CA certificates. However, most likely, the configured target subject DN did not match the subject DN of the received end-entity certificate.
  • Page 89: Selecting A File For Transfer

    Deployment Tool with TLS To select a file for writing, the user must first load the file into the Tool. Do this by pressing the button denoted by the Open File Icon, and selecting the file. Once loaded, the pathname of the selected file is shown in the Security Pane, and the file’s contents can be displayed by pressing the but- ton denoted by the Certificate Icon.
  • Page 90: Transferring A Server Key Material File

    Deployment Tool with TLS Transferring a Server Key Material File Pressing the View Certificates Button on a server key material file displays the Key Material File Dialogue. The certificates contained in the file are shown on the left-side of the dia- logue.
  • Page 91: Transferring A Client Trusted Certificates File

    Deployment Tool with TLS Transferring a Client Trusted Certificates File Pressing the View Certificates Button on a client trusted certificates file displays the Trusted Certificates File Dialogue. The certificates contained in the file are shown listed on the left-side of the dialogue.
  • Page 92 © Siemens AG 2004 Information and Communication Networks Hofmannstr. 51 • D-81359 München The information provided in this document contains merely general de- scriptions or characteristics of performance which in case of actual use Ref. No.: A31003-A2056-A105-63-76A9 do not always apply as described or which may change as a result of further development of the products.

Table of Contents