08-27-2021 08:35 PM
Hi Guys,
Im deploying Calling in Webex (Unified CM), we have Jabber solution deployed and working fine. So I can register my Webex Client in CUCM from Internet through the Expressways (MRA) but when I try to register in the internal network, it doesnt work. I think it is because Webex client ask for an public certificate, but CUCM servers dont have it.
I am right? Is a public certificate required? Is there an option to Webex client accept the autosigned certificates?
Thanks
Carlos Olórtiga
09-09-2021 06:18 AM
Hi @Carlos Olortiga,
Please review certificate requirement section from deployment guide:
This should resolve your issue.
09-06-2021 01:00 AM - edited 09-08-2021 11:28 PM
Hi Carlos,
you could try the following:
To establish a secure connection with Unified CM, Webex validates the certificate that is presented by the server during the connection process. Unlike Jabber, Webex does not prompt users with the option to accept an untrusted certificate.
Unified CM must be configured with certificates that Webex can validate, preferably a CA root that signed the tomcat certificate (which is known to the operating system that Webex is on, Windows or MacOS by default). or a self-signed trusted certificate (which must be deployed to the OS in advance by the enterprise administrator).
I highlighted the interesting part for you. Maybe you don't have the self signed certificate in your local OS trust store. If not you could try to upload it. Of course it is always recommended to deploy CA signed certificates.
Regards Thomas
08-28-2021 05:53 AM
As @Roger Kallberg you don't need to have a public signed certificate.
What popup you received, certificate warning or certificate expired message ?
08-28-2021 06:51 AM
08-27-2021 11:18 PM
It does not need to have public signed certificate, you can use internally signed certificates. Aka certificates in CM that are signed by an internal CA.
For details on certificate handling please see this document that I wrote on the topic. Cisco UC Certificates Renewal Guide
08-28-2021 06:49 AM
Ok, so certificates signed by an internal CA is acceptable. Are autosigned acceptable too?
09-08-2021 01:23 PM
Not sure if I fully understand what you mean by auto signed certificates. Would you mind to please elaborate!
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide