Certificate management

Last Updated : Jul 09, 2023 |

Use the Certificate management page in EMS to manage all certificates used in TLS handshakes.

Note:

You must upload valid PEM-encoded X.509 certificates to the EMS for all certificates, certificate authorities, and certificate revocation lists. You must convert the certificates that are in an incorrect format by using an SSL tool, such as OpenSSL. You can access the OpenSSL tool at: https://www.openssl.org/. For tips and tricks about working with certificates using OpenSSL, see Considerations for working with TLS.

Certificate Signing Requests (CSRs)

You can use the basic built-in tool in EMS to generate a CSR that is compatible with Avaya SBC. However, is not mandatory to use this tool to generate a CSR.

Note:
  • Generate a CSR if the device does not have an ID certificate or if you change any of the device attributes, such as CN or Subject Alt Name.

  • Do not generate a CSR to renew a certificate that is about to expire. Use existing CSR from the Certificate management page.