JITC security compliance mode configuration
You must configure the deskphone to work in the security mode in which the UCR requirements to
the JITC test cases are complied. In the
46xxsettings
file, set the parameters to the values
specified in the table below.
Parameter
Value
Description
FIPS_ENABLED
1
Use cryptographic algorithms
using embedded FIPS 140-2-
validated cryptographic module.
PROCSTAT
0
Enables local CRAFT procedure.
PROCPSWD
Obtained from Communication
Manager, DHCP server, or file
server
Restricts the use of the default
administration password of the
deskphone. The value can be set
on Communication Manager,
DHCP server, or file server.
Note:
Obtaining PROCPSWD
through Communication
Manager is the most secure
method. Setting
PROCPSWD using HTTPS
is secure only if mutual
certificate authentication is
done.
PKCS12URL
URL of the PKCS #12 file
The PKCS #12 file contains an
identity certificate for the
deskphone, and the
corresponding private key. After
the file is downloaded by the
phone, the user is required to
enter the password.
TRUSTCERTS
List of trusted certificate files
Trust certificates are used as trust
points for TLS connections.
TLSSRVRVERIFYID
1
To verify the identity of the TLS
server against the identity in the
certificate. The identity of server
as presented in subject common
name or subjectAltName is
compared with the relevant IP
address or host name of the
server. The server is configured
using BRURI for Backup/restore
over HTTPS, TLSSRVR for
HTTPS file server for
configuration files download, and
Table continues…
Administrative requirements
May 2018
Installing and Administering Avaya J169/J179 IP Phone H.323
55