User's Manual
100
Document #: LTRT-65422
MP-11x & MP-124
the OCSP server for revocation information whenever a peer certificate is received (IPSec,
TLS client mode, or TLS server mode with mutual authentication).
To configure OCSP:
1.
Open the General Security Settings page (
Configuration
tab >
VoIP
menu >
Security
>
General Security Settings
).
Figure
9-5: OCSP Parameters
2.
Configure the OCSP parameters as required. For a description of these parameters,
see OCSP Parameters on page
456
.
3.
Click
Submit
.
Notes:
•
The device does not query OCSP for its own certificate.
•
Some PKIs do not support OCSP but generate Certificate Revocation
Lists (CRLs). For such cases, set up an OCSP server such as OCSPD.
9.7
Loading Certificate Chain for Trusted Root
A certificate chain is a sequence of certificates where each certificate in the chain is signed
by the subsequent certificate. The last certificate in the list of certificates is the Root CA
certificate, which is self-signed. The purpose of a certificate chain is to establish a chain of
trust from a child certificate to the trusted root CA certificate. The CA vouches for the
identity of the child certificate by signing it. A client certificate is considered trusted if one of
the CA certificates up the certificate chain is found in the server certificate directory.
Figure
9-6: Certificate Chain Hierarchy
For the device to trust a whole chain of certificates, you need to combine the certificates
into one text file (using a text editor). Once done, upload the file using the 'Trusted Root
Certificate Store' field in the Certificates page.
Notes:
The maximum supported size of the combined file of trusted chain of
certificates is 100,000 bytes (including the certificate's headers).
Summary of Contents for Media Pack MP-124
Page 2: ......
Page 14: ...User s Manual 14 Document LTRT 65422 MP 11x MP 124 Reader s Notes...
Page 18: ...User s Manual 18 Document LTRT 65422 MP 11x MP 124 Reader s Notes...
Page 23: ...Part I Getting Started with Initial Connectivity...
Page 24: ......
Page 32: ...User s Manual 32 Document LTRT 65422 MP 11x MP 124 Reader s Notes...
Page 33: ...Part II Management Tools...
Page 34: ......
Page 36: ...User s Manual 36 Document LTRT 65422 MP 11x MP 124 Reader s Notes...
Page 86: ...User s Manual 86 Document LTRT 65422 MP 11x MP 124 Reader s Notes...
Page 88: ...User s Manual 88 Document LTRT 65422 MP 11x MP 124 Reader s Notes...
Page 93: ...Part III General System Settings...
Page 94: ......
Page 103: ...Part IV General VoIP Configuration...
Page 104: ......
Page 130: ...User s Manual 130 Document LTRT 65422 MP 11x MP 124 Reader s Notes...
Page 164: ...User s Manual 164 Document LTRT 65422 MP 11x MP 124 Reader s Notes...
Page 174: ...User s Manual 174 Document LTRT 65422 MP 11x MP 124 Reader s Notes...
Page 199: ...Part V Gateway Application...
Page 200: ......
Page 202: ...User s Manual 202 Document LTRT 65422 MP 11x MP 124 Reader s Notes...
Page 240: ...User s Manual 240 Document LTRT 65422 MP 11x MP 124 Reader s Notes...
Page 286: ...User s Manual 286 Document LTRT 65422 MP 11x MP 124 Reader s Notes...
Page 287: ...Part VI Stand Alone Survivability Application...
Page 288: ......
Page 296: ...User s Manual 296 Document LTRT 65422 MP 11x MP 124 Reader s Notes...
Page 319: ...Part VII Maintenance...
Page 320: ......
Page 326: ...User s Manual 326 Document LTRT 65422 MP 11x MP 124 Reader s Notes...
Page 359: ...Part VIII Status Performance Monitoring and Reporting...
Page 360: ......
Page 389: ...Part IX Diagnostics...
Page 390: ......
Page 404: ...User s Manual 404 Document LTRT 65422 MP 11x MP 124...
Page 417: ...Part X Appendix...
Page 418: ......
Page 580: ...User s Manual 580 Document LTRT 65422 MP 11x MP 124 Reader s Notes...