
Figure 46: PKCS12 password prompt
Important:
The password can be empty, but the use of an empty password is not
recommended except under very controlled conditions.
4. After the password is validated, the IP Deskphone extracts the private key and
device certificate from the PKCS#12 file.
5. The IP Deskphone validates the device certificate to ensure that the device
certificate is signed by a trusted CA, is not revoked, and that the key size meets the
minimum requirement.
6. If the device certificate is validated correctly, the IP Deskphone stores the device
certificate and the private key in the IP Deskphone memory (SFS) in the device
certificate profile specified in the [DEV_CERT] section.
CTL download
This section describes the process of downloading a CTL file on the IP Deskphone.
1. The administrator adds the [CTL] section to 12xxSIP.cfg to allow the IP Deskphone
to download a CTL file. The following is an example of the format for the [CTL]
section:
[CTL] DOWNLOAD_MODE AUTO PROTOCOL HTTPS FILENAME ctl.pem
2. After 12xxSIP.cfg is downloaded to the IP Deskphone from the provisioning server
the IP Deskphone executes the [CTL] section and downloads the CTL file.
3. After the CTL file is downloaded, the IP Deskphone validates the CTL file to ensure
that the CTL file is signed by a trusted entity. If the CTL file is validated correctly,
the CTL file is stored in the IP Deskphone memory (SFS).
Certificate-based authentication
232 SIP Software for Avaya 1200 Series IP Deskphones-Administration January 2012
Comentários a estes Manuais