Third-Party Generic Certificate on CUCM 7.1

Unanswered Question
Apr 13th, 2010
User Badges:

Guys,


  I am installing a CUCM 7.1.3 server, and my customer has requested me to use a Third-Party certificate that they already have. The cert is issued for the name *.company.com.


I have some doubts about installing it on the CCM Servers.


I have tried, and I cannot installing without generation a Certificate Server Request.

I tried to upload the cert after generating a CRS with the default values (i did not use "set web-security" yet) and it gave me an error of not matching the name on the certficate.


Does this CSR has to match with the info on the certificate I already have? Or it´s just that I have to configure the FQDN on the CCM server? (as <servername>.company.com). Currently I use only IP addresses on CCM, with no DNS enabled. I am afraid I may break averything by enabling DNS.


Has anyone did this before?


Regards,


Ariel.


  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 5 (1 ratings)
Loading.
htluo Fri, 04/16/2010 - 17:41
User Badges:
  • Red, 2250 points or more

CSR means "Certificate Signing Request".


The correct procedure is:

1) You generate a CSR from CUCM.

2) You send the CSR to CA (Certificate Authority)

3) CA generate a certificate based on CSR

4) You upload certificate to CUCM.


Michael

http://htluo.blotspot.com

Actions

This Discussion