Transport Layer Security encryption checklist

Last Updated : Apr 11, 2021 |
Prolog information
Avaya Context Store Snap-in supports Transport Layer Security (TLS) encryption for connection to the External Data Mart (EDM) database.
To enable TLS encryption in Context Store, you must perform the following tasks:
S.No.
Tasks
Descriptions
Notes
1
Configure the prerequisites for certificate management
For configuring certificate management and encrypted connections, you must:
  • Ensure that you use a compatible JDBC driver.
  • Based on your requirement, configure the user configuration options in the Local Group Policy Editor of your server.
2
  • Create Transport Layer Security (TLS) certificate in System Manager
  • Download TLS certificate from System Manager
  • Import TLS certificate from System Manager
  • Export TLS certificate from MS SQL server
For using secure TLS connections between MS SQL Server and System Manager, configure a valid security certificate.
You can create this certificate from the root certificate in System Manager, or obtain the certificate from a third-party certificate authority.
If you create a TLS certificate that is not from System Manager, you must import the certificate to the System Manager truststore.
3
Configure MS SQL Server to listen on a static port
For the MS SQL server to listen on a static port, configure the settings by using the SQL Server Configuration Manager.
4
Configure MS SQL Server for forced encryption
For enabling forced encryption, configure the MS SQL server protocols for the required MS SQL server instance.