TD 92326GB
2009-03-10 / Ver. E
Installation and Operation Manual
VoIP Gateway
25
or neither the certificate nor any of the issuing CAs are trusted. If one of that certificates
should be trusted for future connections you can select and add it to the trust list.
Figure 22. Certificates
Figure 22.
Field name
Description
Trust list
You can add either individual endpoint certificates or a CA
(Certificate Authority) certificate if you want to accept all
certificates issued by that CA.
• File
You can upload either DER- or PEM-encoded certifiates.
PEM-files may contain multiple certificates.
When the list exists you have the following options:
– Remove:
Remove the selected certificate.
– Clear:
Remove all certificates from the trust list.
– Details:
Click the name of a certificate to view its details.
– Download:
Download a single certificate by clicking the PEM- or DER-
link, respectively.
– Download all:
Download the complete trustlist as a PEM-encoded text
file. You can upload that file to another box.
Rejected certificates
This list contains the certificate chains that were rejected
before, while trying to establish a secure TLS connection.
This happens for example if the certificate is expired or
neither the certificate nor any of the issuing CAs are
trusted. If one of the certificates should be trusted for
future connections you can select and add it to the trust
list, directly.
– Trust:
Add the selected certificates to the trust list and remove
the corresponding chains from the rejected certificates.
– Clear:
Discard all rejected certificate chains
– Details:
Click the name of a certificate to view its details.
Device certificate
The device certificate can be used by remote Transport
Layer Security (TLS) endpoints to authenticate the identity
of the device. In general this is not a single certificate but a
chain containing the device certificate and the certificates
of the intermediate CAs up to the root CA. A TLS
connection can only be established if the remote endpoint
trusts at least one of that certificates.
– Trust:
Add the selected certificates to the trust list.