Installation and Operation Manual

Table Of Contents
TD 92579EN
10 April 2015 / Ver. N
Installation and Operation Manual
IP-DECT Base Station & IP-DECT Gateway (software version 7.2.X)
42
5 Click “OK”.
6 A new key pair and a certificate will be cr
eated. This may take up to one hour
depending on the key strength selected. During this time the device will be fully
operational with the exception of https not working and the certificate tab pane
not being visible.
Certificate Signing Request (CSR)
This section corresponds to option 3A & 3B in 2.
2.2 TLS Certificates on page 5. This will be
the most common options for IP-DECT systems. For more information on CSRs
see Certificate Authorities on page 3.
1 Select Configuration > General > Certificates.
2 Click the "Create New" hyperlink in the Device Certificate sect
ion. A New Certificate
window will open.
3 Select “Signing Request” in the Typ
e drop-down list.
4 Select/Enter the following settings:
Field name Description
Key Select the desired key strength (1024-bit, 2048-bit,
40
96-bit) or select to reuse the old key pair (this is not
recommended).
Signature Select which signature that shall be used for the
cert
ificate. Following signatures can be selected: SHA1,
SHA256, SHA384, SHA512. The last three ones are
SHA2 variants.
Validity This is an read-only information field indicating a
d
efault mandatory validity of 1 year. The time length of
the validity is defined by the CA.
Common Name Enter the domain name or IP address for the device.
This is the
same value as entered in the web browser
when accessing the device.
DNS Name If the device has got a DNS name it should be entered
her
e. It will be stored as a subjectAltName (SAN) in the
certificate. The format of this field is a FQDN (e.g.
host.domain.com).
Key Select either the desired key strength (1024-bit, 2048-
bit
, 4096-bit) or select to reuse the old key pair (this is
not recommended).
Signature Select which signature that shall be used for the
cert
ificate. Following signatures can be selected: SHA1,
SHA256, SHA384, SHA512. The last three ones are
SHA2 variants.
Validity Enter the default validity in years. This is a mandatory
field.
Common Name Enter the domain name or IP address for the device.
This is the
same value as entered in the web browser
when accessing the device.
DNS Name If the device has got a DNS name it should be entered
her
e. It will be stored as a subjectAltName (SAN) in the
certificate. The format of this field is a FQDN (e.g.
host.domain.com).