Microsoft Exchange Server vendor to obtain information about configuring password security
policies.
Note:
If you use the Unified Login feature, there are no issues with Microsoft Exchange Server
security policies. Avaya Vantage
™
uses the Unified Login credentials to access the Exchange
account.
Certificate management
Digital certificates are electronic documents used to confirm the identity of the device or
application. A number of Avaya Vantage
™
applications use these certificates, which include built-in
Andriod trusted certificates and downloaded trusted certificates.
• Avaya Vantage
™
platform applications:
- Android: Wi-Fi 802.1x authentication, Exchange and Google accounts, and browsers using
HTTPS.
- Avaya: Configuration and firmware file downloads using HTTPS, SCEP over HTTPS,
Avaya Aura
®
Device Services or Authenticated file server, and PPM.
• Communication applications: Use certificates for different activities, such as SIP connectivity
using SIP over TLS and PPM over TLS and connection to Avaya Aura
®
Device Services
servers.
Avaya Vantage
™
downloads trusted digital certificates and a PKCS12 file, and generates the
identity certificate using SCEP.
The downloaded trusted certificates are stored in the Android trust store under the “VPN and
APPS” and “Wi-Fi” repositories. These certificates are available for all applications, including third
party applications. The “Wi-Fi” repository contains only the downloaded trusted certificates. The
“VPN and APPS” repository contains the Android built-in CA certificates and the downloaded
trusted certificates.
To store built-in Android certificates and downloaded certificates, Avaya Vantage
™
uses the
Android certificate store.
By default, users can install and review installed trusted and identity certificates. To restrict
certificate installation, system administrators can provide a list of applications that can install
certificates using the CERT_INSTALL_APPLICATION_LIST parameter. If this parameter is
configured to ”“, then only the Avaya Vantage
™
platform can change or update trusted certificates
using the TRUSTCERTS configuration parameter. Avaya Vantage
™
downloads trusted certificates
and adds these certificates to the Android certificate store.
Note:
For security reasons, it is recommended to use the ”“ value for
CERT_INSTALL_APPLICATION_LIST.
Avaya Vantage
™
downloads a PKCS12 file from a URL specified in the PKCS12URL configuration
parameter. If the PKCS12PASSWORD configuration parameter does not contain the valid
password for the PKCS12 file, Avaya Vantage
™
prompts users to enter the password. If the
Certificate management
May 2018 Installing and Administering Avaya Vantage
™
39
Comments on this document? infodev@avaya.com