cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
665
Views
0
Helpful
1
Replies

CME 9.1 and CUE 8.6 with signed certificates?

Jason Aarons
Level 6
Level 6

Has anyone replaced the self signed certificates in CME 9.1 and CUE 8.6 with signed certificates? Just wondering if we disabled http and only enabled https if CUE could still import users from CME.

IOS 15.2.4M and SRE710

How would I do a Certificates Signing Request in IOS and a Certificate Signing Request in CUE 8.6?

Most importantly can someone attest they are using this in production and it works.  We want end users to be able to login to CME/CUE similar to CCMUser and CiscoPCA.

1 Reply 1

Akhil Behl
Level 1
Level 1

Jason,

I have not seen so far, anyone using third party (external CA) signed certificates for IOS in production.

Moreover, it is possible to do it for CUCME and not for CUE (unless anything has changed from last release).

Here's a link explaining how you can get GoDaddy certificates for IOS

http://docwiki.cisco.com/wiki/Installing_GoDaddy_SSL_Certificates_on_a_Cisco_IOS_Router_using_CLI

You can leverage IOS CA certificates for both CUCME and CUE - more so if you have a dedicated IOS CA router

and can distribute the IOS CA root cert in the org certificate trust store. That way, you safeguard the setup from any gotchas.

Regards,

Akhil Behl
Solutions Architect
akbehl@cisco.com

Author of “Securing Cisco IP Telephony Networks”
http://www.ciscopress.com/title/1587142953

Akhil Behl Solutions Architect akbehl@cisco.com Author of “Securing Cisco IP Telephony Networks” http://www.ciscopress.com/title/1587142953