Important:
Using encryption is subject to local regulation. In some countries it is restricted or limited for
usage. For more information, consult your local reseller.
TLS enables network devices to communicate securely using certificates, to provide authentication
of the devices and encryption of the communication between them.
To create a TLS certificate, you need to generate a certificate signing request (CSR) and send it to
the certification authority (CA) for signing. A CA has its own certificate, known as the CA root
certificate. When the CA signed certificate is ready, you upload it into the XT Series for which it was
created, together with the CA root certificate. Once this is done, the component can authenticate
itself and is ready for TLS connection.
Each time a video network device starts the TLS communication session, it sends its own signed
certificate together with the CA root certificate and requests the same certificates from the other
devices to which it wants to connect. After both devices verify each other's identity, a secure TLS
connection can be established. Exchanging certificates between devices is part of the TLS protocol;
it happens in the background and is transparent to a user.
Figure 113: Establishing TLS connection
The following set of procedures secure the connection between XT Series and other devices.
Perform these tasks in the order listed below:
1. Create and upload the Scopia
®
Management's certificate for videoconferencing components
as described in Administrator Guide for Scopia
®
Management.
2. Perform Generating and Uploading a Certificate Signing Request for XT Series on
page 162.
3. Perform Enabling the TLS Connection in XT Series on page 167.
4. If you used a different CA for XT Series from the one used for Scopia
®
Management, upload
the XT Series's CA root and intermediate certificates into Scopia
®
Management as described
in Administrator Guide for Scopia
®
Management.
Securing Connections to the XT Series Using TLS
April 2015 Avaya Scopia
®
XT Series Deployment Guide 161
Comments? infodev@avaya.com