cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
618
Views
0
Helpful
1
Replies

Web security and certificates

This is a matter of general understanding and does not reply to specific versions of Cisco Call Manager/ IM&P. I have some problems understanding the connection between the web security part eg. accessing the CLI of the CUCM. Here you can check the details when you generate certificates, for example tomcat or call manager. I have been told that the servers should be defined by hostnames/FQDN and not IP addresses under the system => server part of the call manager and that the certificate part would not work if the servers are defined with IP addresses.Why is that?

The reason for deploying certificates is to avoid certificate pop up warnings when logging into a Jabber client and also to ex. avoid security warnings in the browser when accessing the GUI interface of the call manager/IM&P. Is it also maybe possible to direct me to a document describing this in depth?    

1 Reply 1

Chris Illsley
Level 3
Level 3

HI Brian,

Wrong forum, but in answer to your question for the certificate to work properly it needs to validate itself against a matching DNS record, without this the client has no way of knowing that the device they are accessing is the one that is meant to have the certificate installed on it.

Hope this helps,

Thanks
Chris