To establish a secure SIP connection to Session Manager, recent versions of SIP devices require that the certificate chain that signed the Session Manager identity be imported into truststore of the platform hosting the device.
This is the first of two steps required to establish trust between SIP devices and Session Manager. The following example procedure shows how to export the certificate chain when the Certificate Authority is System Manager.
On the System Manager web console, navigate to Services Security.
In the navigation pane, click Certificates.
Click Authority.
In the navigation pane, click CA Functions CA Structure & CRLs.
Click Download PEM file.
In the dialog box, click Save File to save the certificate to the desktop.
At the desktop, rename SystemManagerCA.cacert.pem such that the file extension ends with cer.