About this task
To configure TLS as the Proxy Transport for SIP signaling, you must configure the appropriate trusted certificates on Experience Portal and Avaya Session Manager:
Install the CA certificate(s) that signed the Avaya Session Manager identity certificate as a trusted certificate of type SIP Connection on the EPM server.
Install the CA certificate(s) that signed the MPP server identity certificate as a trusted certificate on Avaya Aura® Session Manager
The identity certificates and trusted certificate are used to establish a mutually authenticated connection between Experience Portal and the SIP Proxy. Avaya Session Manager is typically used as the SIP Proxy server.
Note:
If the MPP server identity certificate is signed by the EP Certificate Authority, then export the EP Signing Certificate (Root) and install on the Avaya Session Manager.
If the MPP server identity certificate is signed by an external Certificate Authority, then install the external Certificate Authority trusted certificate chain on the Avaya Session Manager.
For more information, see Certificate authorities and Installing trusted certificate for TLS authentication with Avaya Aura Session Manager.