Generating Identity Certificate from the System Manager Certificate Authority

Last Updated : May 18, 2021 |

About this task

Use this procedure generate Identity Certificate from the System Manager Certificate Authority (CA) in the P12 format.

Procedure

  1. Create an end entity: Log on to Avaya Aura® System Manager.
  2. On the System Manager web console, click Services > Security > Certificates > Authority.
  3. In the navigation pane, in the RA Functions section, click Add End Entity.
  4. In the End Entity Profile field, select INBOUND_OUTBOUND_TLS.
  5. In the Username field, enter a user name.
  6. In the Password (or Enrollment Code) field, enter a password.

    Ensure that you make a note of the user name and password. The user name and password are required when generating the certificate.

  7. In the Confirm Password field, re-enter the password.
  8. Complete any other fields that you want in your certificate.
  9. In the CN, Common name field, enter the FQDN of Session Border Controller.
  10. In the IP Address field, enter the IP address of Session Border Controller.
  11. In the Certificate Profile field, select ID_CLIENT_SERVER.
  12. In the CA field, select tmdefaultca.
  13. In the Token field, select P12 file.
  14. Click Add.
  15. Create a keystore: On the System Manager web console, click Services > Security > Certificates > Authority.
  16. In the navigation pane, click Public Web.
  17. On the EJBCA welcome page, in the navigation pane, click Create Keystore.
  18. On the Keystore Enrollment page, enter the user name and password that you specified while creating the end entity.
  19. Click OK.
  20. Select the Key Length as 2048 bits.
  21. Click Enroll.
  22. Save the certificate file in the P12 format.