TLS server profile checklist for client side TURN configuration

Last Updated : Oct 10, 2018 |

Perform the tasks outlined in this checklist to create a TLS server profile that is used if media tunneling requires better readability through firewalls.

No.

Task

Notes

1

Create a certificate signing request.

See Certificate setup.

Use the following options:
  • For Common Name, use the TURN media FQDN. For example: turnmedia.company.com.

  • For Subject Alternative Name, use the TURN media FQDN. For example: DNS:turnmedia.company.com.

2

Download and save the created .KEY and .CSR files.

3

Send the .CSR file to a public CA for signing.

4

Install the signed certificate and the key on the Avaya SBC.

See Installing a certificate and a key.

When installing the certificate, use a descriptive name. For example: turnmediaCert.

5

Create a TLS server profile using the installed certificate.

See Creating a TLS server profile.

When creating a profile, use the certificate installed on the Avaya SBC in the previous step.

Provide a descriptive name for the profile. For example: turnmediaTlsProfile.