Before you begin
To configure TLS as the Proxy Transport for SIP signaling between Experience Portal, Avaya Aura® Session Manager , and Communication Manager, the following certificate management steps are required:
-
The CA certificate that signed the Experience Portal server’s identity certificate must be imported as a trusted certificate on Avaya Session Manager.
-
If the Experience Portal servers are using default identity certificates, then the EP Signing Certificate (Root) must be installed as a trusted certificate on Avaya Session Manager.
-
If the Experience Portal servers are using externally signed identity certificates, then the trusted certificate of the CA that signed the Experience Portal server’s identity certificate must be installed as a trusted certificate on Avaya Session Manager.
-
The CA certificate that signed the Avaya Session Manager’s identity certificate must be imported as a trusted certificate on Experience Portal.
The identity and trusted certificates establish a mutually authenticated secure connection with Avaya Session Manager.