264
Dialogic
®
1000 and 2000 Media Gateway Series User’s Guide
Data Security
•
When accessing the Media Gateway, use https:// instead of the non-secure http:// followed by
the Media Gateway's URL.
This section includes the following information about HTTP security:
•
HTTPS Certificate Configuration
•
7.2.1
HTTPS Certificate Configuration
An HTTPS certificate can be either self-signed or certificate authority (CA) signed. A self-signed
certificate can be generated by the Media Gateway. CA signed certificates must be requested by the
Media Gateway and then signed by a CA.
When using a self-signed certificate:
•
The Media Gateway generates a self-signed public key certificate.
•
This certificate is then exported and downloaded from the Media Gateway to a PC via HTTP
(or HTTPS if already active).
•
The certificate is then configured into the Windows
®
PC running the HTTPS Web browser
used to connect to the Media Gateway.
•
From this PC, the user logs on to the Media Gateway using the https://[URL].
•
HTTPS is then automatically used when accessing all subsequent Web pages.
When using a CA signed certificate:
•
The Media Gateway generates a certificate signature request (CSR).
•
The CSR is exported from the Media Gateway to a PC via HTTP (or HTTPS if already active).
•
The CSR is used by the CA to create a signed certificate.
•
The CA signed certificate is uploaded to the Media Gateway.
•
The root certificate of the CA that signed the CSR is configured into the PC running the Web
browser used to connect to the Media Gateway via HTTPS.
•
The user logs into the Media Gateway by going to https://[URL]
•
HTTPS is automatically used when accessing all the subsequent Web pages
The choice of either self-signed or CA-signed certificates depends on the system administration
and the desired level of trust within the system. Self-signed certificates are generated by the Media
Gateway and therefore do not cost any money - and may require less time to install. A self-signed
certificate is simply downloaded from the gateway and installed on the PC running the Web
browser used to connect to the Media Gateway via HTTPS.
However, when self-signed certificates are used, the PC/Web Browser must have a unique
certificate installed for each Media Gateway with which it will communicate. This process could
get lengthy if the PC/Web Browser needs to communicate with a number of Media Gateway units.
On the other hand, CA signed certificates require time and effort to install since the certificates
must be signed by a CA. However, once you have the signed certificate, the CA root certificate can
be used to communicate with multiple Media Gateway units.
Содержание 1000Series
Страница 1: ...Dialogic 1000 and 2000 Media Gateway Series User s Guide December 2014 64 0346 13...
Страница 10: ...10 Dialogic 1000 and 2000 Media Gateway Series User s Guide Contents...
Страница 14: ...14 Dialogic 1000 and 2000 Media Gateway Series User s Guide Contents...
Страница 24: ...24 Dialogic 1000 and 2000 Media Gateway Series User s Guide About This Publication...
Страница 36: ...36 Dialogic 1000 and 2000 Media Gateway Series User s Guide Overview...
Страница 44: ...44 Dialogic 1000 and 2000 Media Gateway Series User s Guide Media Gateway Configuration...
Страница 190: ...190 Dialogic 1000 and 2000 Media Gateway Series User s Guide Parameter Reference...
Страница 200: ...200 Dialogic 1000 and 2000 Media Gateway Series User s Guide Call Progress Tones...
Страница 272: ...272 Dialogic 1000 and 2000 Media Gateway Series User s Guide Data Security...
Страница 286: ...286 Dialogic 1000 and 2000 Media Gateway Series User s Guide Diagnostics Figure 52 TDM Self Verification Web Page...
Страница 326: ...326 Dialogic 1000 and 2000 Media Gateway Series User s Guide...