TLS Management

Last Updated : Jul 25, 2019 |

With the TLS Management screen to manage the parameters defined by the Transport Layer Security (TLS) protocol. You must configure the parameters to efficiently administer the security services that establish and maintain a secure TCP/IP connection between two communicating entities.

Implementing TLS within an enterprise VoIP network ensures communications session confidentiality, message integrity, and user authentication.

For a successful TLS management, the client and the server must be certified, so that the identities can be verified and trusted. The mechanism used to authenticate subscriber identities are certificates that are issued by a trusted Certificate Authority (CA).

Use the TLS Management screen to manage each facet of the TLS connection: certificates, clients, and servers. By selecting the desired TLS function (Certificates, Client Profiles, and Server Profiles) from the Task Pane and setting the corresponding parameters to precisely define how you want the TLS feature to function.

Use the TLS Management screen to manage the following facets of the TLS connection: certificates, clients, and servers. You can manage the facets by selecting a TLS function from the task pane.

TLS management field descriptions

Feature

Description

Certificates

Displays a certificates tab. Use this tab to handle the installation of certificates, CA root certificates, and Certificate Revocation Lists (CRL).

Client Profiles

Displays a list of available client profiles in the application pane. You can also define additional client profiles using automated field requests to solicit the information necessary to authorize a client to participate in a secure TLS session.

Server Profiles

Displays a list of available server profiles in the application pane. You can also define additional server profiles using automated field requests to solicit the information necessary to authorize a server to participate in a secure TLS session.

SNI Group

An SNI group is a collection of TLS profiles. The functionality of SNI group depends on Avaya SBC, if it is acting as a client or as a server during the communication.