User's Manual Part 2
Firmware Version 1.0.0.1  UCM6200 Series IP PBX User Manual  Page 272 of 320
Note: 
The IP address must match the common name (hostname) in the 
certificate. Please do not bind a TLS socket to multiple IP addresses. For 
details on how to construct a certificate for SIP, please refer to the 
following document: 
http://tools.ietf.org/html/draft-ietf-sip-domain-certs 
TLS Client Protocol 
Select the TLS protocol for outbound client connections. The default 
setting is TLSv1. 
TLS Do Not Verify 
If enabled, the TLS server's certificate won't be verified when acting as a 
client. The default setting is "Yes". 
TLS Self-Signed CA 
This is the CA certificate if the TLS server being connected to requires 
self-signed certificate, including server's public key. This file will be 
renames as "TLS.ca" automatically. 
Note: 
The size of the uploaded ca file must be under 2MB. 
TLS Cert 
This is the Certificate file (*.pem format only) used for TLS connections. It 
contains private key for client and signed certificate for the server. This file 
will be renamed as "TLS.pem" automatically. 
Note: 
The size of the uploaded certificate file must be under 2MB. 
TLS CA Cert 
This file must be named with the CA subject name hash value. It contains 
CA's (Certificate Authority) public key, which is used to verify the 
accessed servers. 
Note: 
The size of the uploaded CA certificate file must be under 2MB. 
TLS CA List  Display a list of files under the CA Cert directory. 
SIPSETTINGS/NAT
Table 87: SIP Settings/NAT 
External Host 
Configure a static IP address and port (optional) used in outbound SIP 
messages if the UCM6200 is behind NAT. If it is a host name, it will only 
be looked up once.   
Use IP address in SDP 
If enabled, the SDP connection will use the IP address resolved from the 
external host. 










