08-09-2016 04:48 AM - edited 03-19-2019 11:26 AM
Hi Guys,
We have a deployment that required 2 Company A (company-A.com) and Company B (company-B.com) can established secure B2B calls with TLS encrypted. Actually those 2 companies are sisters company, and want to secure all communication between 2 CUCM via expressway edge
Below are servers details :
Company A :
--------------------------------------------------------------------------------------------------------------------------
Company B:
We already performed B2B calls via expressway edge successfully with TCP transport and TLS verify mode = Off.
My question is, is there any possibilities we can perform B2B calls with TLS verify mode = On, and all security factor on expressway is active?
Is there any documentation or requirement for this deployment model?
Please advise.
Thanks
Solved! Go to Solution.
08-09-2016 07:26 AM
Yes, all you would require is to turn on the switches for TLS ON and assuming everything goes fine, you can leave media encryption mode to auto, and it should identify it can secure the calls.
Or you can also change the media encryption mode, but only encrypted calls would be accepted.
08-09-2016 07:26 AM
Yes, all you would require is to turn on the switches for TLS ON and assuming everything goes fine, you can leave media encryption mode to auto, and it should identify it can secure the calls.
Or you can also change the media encryption mode, but only encrypted calls would be accepted.
08-09-2016 05:32 PM
Hi Jaime,
Thanks for your response.
I would like to know, do we need to exchange Server Certificate and CA Root on both of the Expressway Edge?
Also,
We create DNS zone on Exp-E (Company A) for communication to other Exp-E node (Company B), and set TLS verify mode to ON. Do we need fill TLS verify subject name with the other Exp-E node subject name as my attachment below?
Thanks
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide