Transport Layer Security overview

Last Updated : Jun 08, 2026 |

Transport Layer Security (TLS) is a protocol designed to secure communications over a network. The TLS protocol provides the following services to all applications:

  • Encryption

  • Authentication

  • Data integrity

Avaya Aura® Device Services supports the following TLS versions:

  • 1.2

  • 1.3

By default, Avaya Aura® Device Services Release 10.2.x can use either TLS 1.2 or 1.3 when you fresh install the system or migrate from Release 8.1.5. Avaya, recommends, however, that you use TLS 1.3 whenever possible. Advantages of TLS version 1.3 include the following:

  • Higher security level to protect users from known attacks.

  • Faster TLS handshake.

  • The use of cipher suites with no known vulnerabilities.

Considerations and limitations

  • Deployment components that interact with Avaya Aura® Device Services over TLS must support the TLS version configured on Avaya Aura® Device Services. Avaya Aura® Device Services uses TLS to interact with the following deployment components:

    • Avaya Aura® System Manager

    • Avaya Aura® Session Manager

    • Avaya Aura® Web Gateway

    • Avaya Aura® Session Border Controller

    • Avaya Meetings Management

    • LDAP server, if secure LDAP connection is enabled

    • External load balancer

    For more information about configuring TLS settings on these products, see documentation for the appropriate product.

  • Onboard Open LDAP does not support TLS 1.3. If you use Onboard Open LDAP, you must use TLS 1.2.

  • System Manager Release 8.x does not support TLS 1.3. If you use System Manager Release 8.x, you must use TLS 1.2.

    Note:

    System Manager Release 10.x supports TLS 1.3.

  • Switching between TLS versions has no impact on any internal services of Avaya Aura® Device Services services and features enabled on Avaya Aura® Device Services, such as FIPS, Utility Server, or Automatic Configuration.

  • Switching between TLS versions might cause considerable Avaya Aura® Device Services downtime because it affects DRS synchronization. Therefore, Avaya recommends that you switch TLS versions during maintenance windows.