Importing SIP CA certificate to the Avaya Aura Device Services trust store

Last Updated : Jun 05, 2026 |

About this task

Before release 6.3.8, Session Manager used the default SIP CA to sign the certificate used by PPM HTTP. After release 6.3.8, the System Manager CA is used. You must manually import SIP CA certificate to the Avaya Aura® Device Services trust store if you had Session Manager 6.3.8 or earlier, and upgraded to a later release.

This procedure is not applicable for deployments without Avaya Aura®.

Procedure

  1. Log in to the Avaya Aura® Device Services server.
  2. Type sudo keytool —importcert —file <CA_Certificate>.cer —keystore /opt/Avaya/DeviceServices/<version>/CAS/<version>/cert/ssl-ts.jks —alias "CA_alias"

    Here, CA_Certificate is the name of the CA certificate file in PEM or DER format. CA_alias is the alias you want to assign this certificate