Note
Managing certificates for communication between SCOPIA Management and other devices is
done as follows:
•
SCOPIA Video Gateway, RADVISION SIP Gateway, and SCOPIA TIP Gateway certificates are
managed from SCOPIA Management's administrator portal.
•
SCOPIA Desktop Server certificates are configured automatically during installation.
•
MCU certificates are managed from the MCU web interface. For details, see the
Administrator Guide for SCOPIA Elite MCU
The following set of procedures secure the connection between SCOPIA Management and the
solution components listed above. Perform these tasks in the order listed below:
1.
Decide your deployment's requirements, as described in
Certificates for TLS” on page 44
2.
“Generating the Certificate Signing Request for SCOPIA Management” on page
.
3.
Ensure that you have the root certificate of the certificate authority your organization
uses.
This root certificate is used when uploading signed certificates into SCOPIA Management
and SCOPIA TIP Gateway.
4.
“Uploading SCOPIA Management Certificates into SCOPIA Management” on page
.
5.
Generate certificate signed requests (CSR) for other deployment components, which is
done via the device itself. For details about generating CSRs for SCOPIA Solution products,
see the product’s Administrator Guide.
You can generate the CSR for SCOPIA TIP Gateway via SCOPIA Management, as described
in
“Generating the Certificate Signing Request for SCOPIA Management” on page 50
.
6.
“Uploading Certificates for the TIP Gateway” on page 58
7.
If the CA used to identify the device is different from the CA which identifies SCOPIA
Management, perform
“Uploading Certificates for Other Devices” on page 61
8.
“Enabling Encryption with SCOPIA TIP Gateway” on page 63
9.
“Enabling the TLS Connection in SCOPIA Management” on page 65
Planning the Required Certificates for TLS
When a device establishes a secure TLS connection with another component, it sends a signed
certificate verifying its identity. The signature on the certificate must be from a known
(trusted) certification authority (CA).
Note
Using encryption is subject to local regulation. In some countries it is restricted or limited for
usage. For more information, consult your local reseller.
RADVISION | Deployment Guide for SCOPIA TIP Gateway Version 8.0
Securing Your Video Network Using TLS | 44