D14850.12 MX200 and MX300 Administrator Guide TC7.3, JULY 2015.
www.cisco.com — Copyright © 2011–2015 Cisco Systems, Inc. All rights reserved.
38
Cisco TelePresence MX200 and MX300
Administrator Guide
i
ii
iii
Managing the list of trusted
certificate authorities
As from software version TC7.2, the signature of an
audit server is verified using the same CA list as other
servers/clients.
Setting up secure audit logging
Audit logging records all sign in activity and configuration
changes on your video system.
Audit logging is disabled by default, but you can enable it
using the
Security > Audit > Logging > Mode
setting.
In ExternalSecure audit logging mode the video system
sends encrypted audit logs to an external audit server
(syslog server), which identity must be verified by a signed
certificate.
If the audit server cannot be authenticated, the logs will not
be sent.
Always upload the list of trusted certificate authorities
before enabling secure audit logging.
Enable secure audit logging
i. Go to the
System Configuration
page and choose the
Security
category.
ii. Enter the
Address
of the audit
server. If you choose
Manual
PortAssignment,
you must also
enter a
Port
number for the
audit server. Click
Save
for the
changes to take effect.
iii. Choose
ExternalSecure
from the
Logging Mode
drop-down list.
Click
Save
for the change to take
effect.
Navigate to: Configuration > Security: CAs tab / Configuration > System Configuration
(page 2 of 2)
Contents
Introduction
System settings
Setting passwords
Appendices
Web interface
Web interface