Transport Layer Security encryption checklist

Last Updated : Apr 11, 2021 |

Avaya Context Store Snap-in supports Transport Layer Security (TLS) encryption for connection to the External Data Mart (EDM) database.

To enable TLS encryption in Context Store, you must perform the following tasks:

S.No.

Tasks

Descriptions

Notes

1

Configure the prerequisites for certificate management

Configuring the prerequisites for certificate management and usage

For configuring certificate management and encrypted connections, you must:

  • Ensure that you use a compatible JDBC driver.

  • Based on your requirement, configure the user configuration options in the Local Group Policy Editor of your server.

2

  • Create Transport Layer Security (TLS) certificate in System Manager

  • Download TLS certificate from System Manager

  • Import TLS certificate from System Manager

  • Export TLS certificate from MS SQL server

Creating Transport Layer Security certificate in System Manager

Downloading Transport Layer Security certificate from System Manager

Importing Transport Layer Security certificate from System Manager

Exporting Transport Layer Security certificate from MS SQL server

For using secure TLS connections between MS SQL Server and System Manager, configure a valid security certificate.

You can create this certificate from the root certificate in System Manager, or obtain the certificate from a third-party certificate authority.

If you create a TLS certificate that is not from System Manager, you must import the certificate to the System Manager truststore.

3

Configure MS SQL Server to listen on a static port

Configuring the MS SQL server to listen on a static port

For the MS SQL server to listen on a static port, configure the settings by using the SQL Server Configuration Manager.

4

Configure MS SQL Server for forced encryption

Configuring MS SQL Server for forced encryption

For enabling forced encryption, configure the MS SQL server protocols for the required MS SQL server instance.