cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
432
Views
0
Helpful
2
Replies

Securing Cisco XML Phone applications with https?

tomschuler
Level 1
Level 1

Hello,

I just want to know of it's possible to use https instead of http for XML phone applications on the Cisco VoIP phones, like the 69xx, 89xx and 99xx models. Currently we're using http only to perform actions on a server or to control an application on the phones. But we want to use https instead. Is this possible and what have to be done before we can use https (certificates, etc) ?

Many thanks in advance!

Regards, Tom

2 Replies 2

Jonathan Schulenberg
Hall of Fame
Hall of Fame

Yes it's possible as long as you are running CUCM 8.0 or later. This is facilitated by the Trusted Verification Service on CUCM and an Initial Trust List that the phone downloads from CUCM over TFTP. The ITL contains the certificates of the CUCM TVS service. The tvs-trust store on CUCM contains the certificate chains that phones should trust. This allows for centralized certificate administration and works around the limited NVRAM space on the phones.

You can read more about this in the Cisco Unified Communications Manager Security Guide, Release 8.6(1)

So HTTPS can be used but the phone has to support Security By Default. Is that correct?

So when pushing a page to a phone is there a way to tell if it will support https?