Genesys Cloud - Main

 View Only

Sign Up

  Thread closed by the administrator, not accepting new replies.
  • 1.  Avaya engineer says he wants the Identity Certificate

    Posted 09-25-2018 09:46
    No replies, thread closed.
    Community,

    We are working to setup an external SIP trunk to a set of Avaya Session Managers. The Avaya engineer says the Session Manager(s) are not trusting the Edge appliance. He is asking for the "identity certificate" from the Edge server to try to import that as a trusted CA. How do I send him the identity certificate?

    I've setup external trunks to Avaya's before but this is the first time I've run into this issue. This engineer had sent me a an Avaya System Manager CA .pem file earlier that I added to the Certificate Authorities container in PureCloud Admin, thinking that would do it. Apparently its not what the Avaya needs. If I look at the Certificate Authority container I also see a Managed Certificate from Interactive that must have been there when we got the Mini-Edge. Can I copy the "Begin Certificate... " text into a text file and send that to him? And he can import that into the Avaya system? Do I need to convert this somehow first?

    Thanks for any advice.


    Screen shot Avaya engineer sent me.


    Certs now on this Edge
    System Manager CA
    The Managed Cert from Interactive Intelligence/PureCloud on the Edge. Can I copy this into a text file and send it to the Avaya engineer?
    Manged Certificate

    ------------------------------
    Greg Beal
    ConvergeOne
    ------------------------------


  • 2.  RE: Avaya engineer says he wants the Identity Certificate

    Posted 09-26-2018 04:52
    No replies, thread closed.
    ​Hi Greg,

    From the Avaya SM trace it looks like the trunk is setup as TLS as it is trying to exchange certificates?  Firstly is there any need for this, as if the trunk is from an on-premise edge to an on-premise Avaya SM then can they not use TCP?

    If you must use TLS, then yes you can copy your CA certificate from PureCloud and provide it to the Avaya engineer our will then be able to import it to their Avaya SMGR so that the Avaya SM server trusts the PureCloud edge.

    Thanks Luke

    ------------------------------
    Luke Mitchell
    G3 Comms Ltd
    ------------------------------



  • 3.  RE: Avaya engineer says he wants the Identity Certificate

    Posted 09-27-2018 11:51
    No replies, thread closed.
    Luke,

    Thanks for the response.

    Yea, I don't know how "really necessary" it is that they use TLS, but they want to eventually use for the Edge to Avaya SIP trunk. We are working on a proof-of-comcept project now, so we just enabled TCP. But will likely change to TLS and full-size Edges if they move forward.

    I did already copy that   "Begin Certificate... " text into a text file and sent that to the Avaya engineer. Thats what I thought he would need to import the CA into his Avaya environment, but he said it wouldn't work. I wasnt sure if there was a problem with that method or he wasn't doing it right or not.

    I guess we will re-visit this if customer like the proof-of-concept work we are doing and wants to buy more.


    ------------------------------
    Greg Beal
    ConvergeOne
    ------------------------------



  • 4.  RE: Avaya engineer says he wants the Identity Certificate

    Posted 06-16-2020 15:04
    No replies, thread closed.
    @Greg Beal 
    Hello
    Please could you tell me If you resolved this problem?
    I need stablish a sip truk with TLS with Avaya, in this moment we are in the same state that you post.
    Could you help me with your experiences?​

    ------------------------------
    Gladys Galabay
    High Telecommunications Sociedad de Telecomunicaciones Cia. Ltda.
    ------------------------------