Operating instructions

TD 92579GB
2009-04-15/ Ver. B
Installation and Operation Manual
IP-DECT Base Station & IP-DECT Gateway (software version 3.0.x)
55
Certificate Signing Request (CSR)
This section corresponds to option 3A & 3B in 4.2.2 TLS Certificates on page 16. This will
be the most common options for IP-DECT systems. For more information on CSRs see
Certificate Authorities on page 14.
1 Select Configuration > General > Certificates.
2 Click the Create New hyperlink in the Device Certificate section. A window will
open.
3 In the window, select “Signing Request” in the Type drop-down list.
4 Select/Enter the following settings:
5 Click “OK”. The windows closes.
A key pair and a CSR file will be created. This may take up to one hour depending
on the key strength selected. During this time the device will be fully operational
with the exception of https not working and the certificate tab pane not being
visible.
When the CSR file has been generated it is visible in the Signing Request section of
the Certificates page.
6 Download the CSR file by clicking the PEM or DER link in the Signing Request
section.
7 Send the CSR file to your CA.
8 If successful your CA will send back a digitally signed certificate file. This file should
now be uploaded.
9 Select the certificate file.
10 Click "Upload".
Figure 36.
Field name Description
Validity This is an read-only information field indicating a
default mandatory validity of 1 year. The time length of
the validity is defined by the CA.
Key Select the desired key strength (1024-bit, 2048-bit,
4096-bit) or select to reuse the old key pair (this is not
recommended).
Common Name Enter the domain name or IP address for the device.
This is the same value as entered in the web browser
when accessing the device.