Phone failed to register. Cert key size is not FIPS compliant
displays in the
phone's status messages.
You cannot use private keys (LSC or MIC) in FIPS mode.
If the phone has an existing LSC that is smaller than 2048 bits, you need to update the LSC key size to 2048
bits or greater before enabling FIPS.
Related Topics
Set Up a Locally Significant Certificate
, on page 72
Cisco Unified Communications Manager Documentation
, on page 12
Security Enhancements for Your Phone Network
You can enable Cisco Unified Communications Manager 11.5(1) and 12.0(1) to operate in an enhanced
security environment. With these enhancements, your phone network operates under a set of strict security
and risk management controls to protect you and your users.
Cisco Unified Communications Manager 12.5(1) does not support an enhanced security environment. Disable
FIPS before upgrading to Cisco Unified Communications Manager 12.5(1) or your TFTP and other services
will not function properly.
The enhanced security environment includes the following features:
• Contact search authentication.
• TCP as the default protocol for remote audit logging.
• FIPS mode.
• An improved credentials policy.
• Support for the SHA-2 family of hashes for digital signatures.
• Support for a RSA key size of 1024 and 4096 bits.
For additional information about security, see the following:
•
Security Guide for Cisco Unified Communications Manager
(
https://www.cisco.com/c/en/us/support/
)
Your Cisco IP phone can only store a limited number of Identity Trust List (ITL) files. ITL files cannot exceed
64K limit on phone so limit the number of files that the Cisco Unified Communications Manager sends to the
phone.
Note
Supported Security Features
Security features protect against several threats, including threats to the identity of the phone and to data.
These features establish and maintain authenticated communication streams between the phone and the Cisco
Unified Communications Manager server, and ensure that the phone uses only digitally signed files.
Cisco IP Conference Phone 8832 Administration Guide for Cisco Unified Communications Manager
68
Cisco IP Conference Phone Administration
Security Enhancements for Your Phone Network
Содержание 8832
Страница 10: ...Cisco IP Conference Phone 8832 Administration Guide for Cisco Unified Communications Manager x Contents ...
Страница 16: ......
Страница 34: ......
Страница 76: ......
Страница 132: ......