D14850.12 MX200 and MX300 Administrator Guide TC7.3, JULY 2015. www.cisco.com — Copyright © 2011–2015 Cisco Systems, Inc. All rights reserved.
38
Cisco TelePresence MX200 and MX300 Administrator Guide
i
ii
iii
Managing the list of trusted
certificate authorities
As from software version TC7.2, the signature of an
audit server is verified using the same CA list as other
servers/clients.
Setting up secure audit logging
Audit logging records all sign in activity and configuration
changes on your video system.
Audit logging is disabled by default, but you can enable it
using the Security > Audit > Logging > Mode setting.
In ExternalSecure audit logging mode the video system
sends encrypted audit logs to an external audit server
(syslog server), which identity must be verified by a signed
certificate.
If the audit server cannot be authenticated, the logs will not
be sent.
Always upload the list of trusted certificate authorities
before enabling secure audit logging.
Enable secure audit logging
i. Go to the System Configuration
page and choose the Security
category.
ii. Enter the Address of the audit
server. If you choose Manual
PortAssignment, you must also
enter a Port number for the
audit server. Click Save for the
changes to take effect.
iii. Choose ExternalSecure from the
Logging Mode drop-down list.
Click Save for the change to take
effect.
Navigate to: Configuration > Security: CAs tab / Configuration > System Configuration
(page 2 of 2)
Web interfaceWeb interface