User's Manual Part 2

Firmware Version 1.0.0.1 UCM6200 Series IP PBX User Manual Page 272 of 320
Note:
The IP address must match the common name (hostname) in the
certificate. Please do not bind a TLS socket to multiple IP addresses. For
details on how to construct a certificate for SIP, please refer to the
following document:
http://tools.ietf.org/html/draft-ietf-sip-domain-certs
TLS Client Protocol
Select the TLS protocol for outbound client connections. The default
setting is TLSv1.
TLS Do Not Verify
If enabled, the TLS server's certificate won't be verified when acting as a
client. The default setting is "Yes".
TLS Self-Signed CA
This is the CA certificate if the TLS server being connected to requires
self-signed certificate, including server's public key. This file will be
renames as "TLS.ca" automatically.
Note:
The size of the uploaded ca file must be under 2MB.
TLS Cert
This is the Certificate file (*.pem format only) used for TLS connections. It
contains private key for client and signed certificate for the server. This file
will be renamed as "TLS.pem" automatically.
Note:
The size of the uploaded certificate file must be under 2MB.
TLS CA Cert
This file must be named with the CA subject name hash value. It contains
CA's (Certificate Authority) public key, which is used to verify the
accessed servers.
Note:
The size of the uploaded CA certificate file must be under 2MB.
TLS CA List Display a list of files under the CA Cert directory.
SIPSETTINGS/NAT
Table 87: SIP Settings/NAT
External Host
Configure a static IP address and port (optional) used in outbound SIP
messages if the UCM6200 is behind NAT. If it is a host name, it will only
be looked up once.
Use IP address in SDP
If enabled, the SDP connection will use the IP address resolved from the
external host.