Generating a .PEM certificate for Avaya SBCE

Last Updated : Mar 27, 2023 |
Prolog information
Use this procedure to provide a certificate, key for Avaya SBCE along with root CA certificate.
  1. Log in to the EMS web interface as an administrator.
  2. In Device, click the Avaya SBCE you want to administer.
  3. Navigate to TLS Management Certificate.
  4. Click Generate CSR.
    ADDITIONAL INFORMATION:
    The EMS server displays the Generate CSR page.
  5. In Country Name, enter the country name within which the certificate is created.
  6. In State/Province Name, enter the state or province where the certificate is created.
  7. In Locality Name, enter the locality or city where the certificate is created.
  8. In Organization Name, enter the name of the company creating the certificate.
  9. In Organizational Unit, enter the group within the company creating the certificate.
  10. In Common Name, enter the name used to identify the company or group creating the certificate.
  11. In Algorithm, select the hash algorithm to use with the RSA signature algorithm.
  12. In Key Size (Modulus Length), select the certificate key length in bits.
  13. In Key Usage Extension(s), select the purposes for which the public key is used.
  14. In Subject Alt Name, enter CN with a semicolon followed by an IP address.
  15. In Passphrase, enter a password used when encrypting the private key.
  16. In Confirm Passphrase, enter the same value as the Passphrase field.
  17. In Contact Name, enter an individual name within the issuing organization as a point of contact for certificate-related issues.
  18. In Contact E-mail, enter the e-mail address of the contact.
  19. Click Generate CSR.
    ADDITIONAL INFORMATION:
    For more information on Generate CSR field descriptions, see Administering Avaya Session Border Controller for Enterprise.
  20. On the System Manager web console, in Services, click SecurityCertificatesAuthority.
  21. In the navigation pane, click Public Web.
  22. In the navigation pane, navigate to Enroll and click Create Certificate from CSR.
  23. In Username, enter the administrative account user name authorized to enroll a certificate.
  24. In Enrollment code, enter the code to identify certificate enrollment.
  25. In Request file, click Browse and navigate to the location of the certificate file.
  26. In Result type, select PEM - full certificate chain and click OK.
    ADDITIONAL INFORMATION:
    To convert a certificate with a .PEM extension to the .crt extension, you can rename the file and change the .PEM extension to .crt.
    Note:
    This configuration generates certificates for inbound and outbound traffic on A1 and B1.