Polycom CX5500 Unified Conference Station Administrator’s Guide 1.1.0
Polycom, Inc. 181
microbrowser and browser, and for 802.1X, LDAP, and SIP authentication. Some applications, such as
Syslog, can only use a TLS Platform Profile, not a TLS Application Profile. See <TLS/> for the list of
applications.
For more information on device (or digital) certificates installed on the phones at the factory, see Digital
Certificates.
Web Info: Using Custom CA Certificates
For more information on using custom certificates, see Technical Bulletin 17877: Using Custom
Certificates With Polycom Phones.
The following table shows parameters for TLS Platform Profile 1. To configure TLS Platform Profile 2, use
a 2 at the end of the parameter instead of a 1. For example, set
device.sec.TLS.profile.caCertList2 instead of .caCertList1.
TLS Platform Profile and TLS Application Profile Parameters
Central Provisioning Server
TLS Platform Profile Parameters (use 2 at the end of each parameter (instead of 1) to set up platform profile 2)
Specify which CA certificates to use
device.cfg >
device.sec.TLS.profile.caCertList1
device.cfg >
device.sec.TLS.profile.cipherSuite1
Select the default cipher suite or a custom cipher suite
device.cfg >
device.sec.TLS.profile.cipherSuiteDefault1
Specify a custom certificate
device.cfg >
device.sec.TLS.customCaCert1
Specify which device certificates to use
device.cfg >
device.sec.TLS.profile.deviceCert1
TLS Application Profile Parameters
Specify which CA certificates to use
site.cfg >sec.TLS.profile.x.caCert.*
site.cfg >sec.TLS.profile.x.cipherSuite
Select the default cipher suite or a custom cipher suite
site.cfg
>sec.TLS.profile.x.cipherSuiteDefault
Specify a custom certificate
site.cfg > sec.TLS.customCaCert.x
Specify which device certificates to use
site.cfg > sec.TLS.profile.x.deviceCert
Specify the custom device key
site.cfg > sec.TLS.customDeviceKey.x
Web Configuration Utility