Data encryption field descriptions

Last Updated : Apr 18, 2022 |

Data encryption is only supported with AVP and the VMware Virtualized Environment.

Name

Description

Data Encryption

Specifies whether data encryption is enabled or disabled on Avaya Aura® Web Gateway. The options are the following:

  • 1: To enable data encryption.

  • 2: To disable data encryption.

Important:

You cannot change encrypted Avaya Aura® Web Gateway to non-encrypted or vice versa without a new OVA installation.

  • On Solution Deployment Manager: When the Data Encryption field is set to 1, Avaya Aura® Web Gateway enables the Encryption Pass-Phrase and Re-enter Encryption Pass-Phrase fields to enter the encryption passphrase.

  • On vCenter or ESXi: When the Data Encryption field is set to 1, enter the encryption passphrase in the Password and Confirm Password fields.

Encryption Pass-Phrase

The passphrase for data encryption. This field is applicable when data encryption is enabled.

When you deploy Avaya Aura® Web Gateway using Solution Deployment Manager, Avaya Aura® Web Gateway applies the password complexity rules.

When you deploy Avaya Aura® Web Gateway using vCenter or ESXi, Avaya Aura® Web Gateway does not apply password complexity rules.

Important:

While using vCenter, when you enable data encryption and do not enter the encryption passphrase, the system does not block the deployment due to a vCenter limitation. Therefore, ensure that you enter the encryption passphrase if data encryption is enabled.

Re-enter Encryption Pass-Phrase

The password for data encryption.

Require Encryption Pass-Phrase at Boot-Time

When this check box is selected, you must type the encryption passphrase whenever Avaya Aura® Web Gateway reboots. By default, the Require Encryption Pass-Phrase at Boot-Time check box is selected.

Important:

Remember the data encryption passphrase. If you lose the data encryption password, the only option to access Avaya Aura® Web Gateway is to reinstall the OVA.

If the check box is not selected, Avaya Aura® Web Gateway creates a local key store, and you do not need to type the encryption passphrase when Avaya Aura® Web Gateway reboots. However, this makes the system less secure.

You can also set up and use a remote key server to store encryption keys. To start using a remote key server, run the sys encryptionRemoteKey command after Avaya Aura® Web Gateway is installed. The remote key server provides more security than the local key store.