User's Manual

PROTOCOL HTTPS
FILENAME ctl.pem.sig
The filename attribute points to the signed CTL file.
Note:
The CTL file size must not exceed 20 Kbytes
Certificate Trust List events
The following provides a list of events related to the Certificate Trust List (CTL) file.
CTL Expiry:
0020[Information][WED OCT 26 03:02:54 2011][270][n:/fw/build/../
util/pki/pki_mgmt.c:3726] - CTL Expired. CTL Date[26:10:2011] Current
Date[25:10:2011]
CTL Deletion:
0015[Information][WED OCT 26 03:02:55 2011][271][n:/fw/build/../
util/pki/pki_mgmt.c:3482] - Deleted CTL
CTL download error:
0021[Information][WED MAY 20 03:00:58 2009][154][n:/fw/build/../
util/tftpsecurity/proc_keys.c:227] - Error Importing CTL. Could not
get dates[DD/MM/YYYY HH:MM:SS]
Certificate administration
The administrator can view and delete certificates and CTLs. Because a certificate can be
deleted, it is critical that the administrator password used to access this function is protected
and limited to only those who require it.
Certificate administration is accessed through the Diagnostics menu .
To view the Certificate Administration option in the Diagnostics menu:
1. Create Security Policy file (a text file).
2. Add the CERT_ADMIN_UI_ENABLE YES in the Security Policy file.
3. Sign the file using a signing certificate; for example, SecurityPolicy.txt.sig
4. Download the file using the [SEC_POLICY] section in the 11xxeSIP.cfg file.
After the Security Policy file is enabled, access the Certificate Administration screen
from the Network screen
5. Select. Device Settings > Diagnostics > Certificate Administration.
Certificate administration
SIP Software for Avaya 1100 Series IP Deskphones-Administration November 2012 259