System Guide
SME VOIP SYSTEM GUIDE 4.7 51 | P a g e
Proprietary and Confidential
5.10.1 Certificates
The certificates list contains the list of loaded certificates for the system. Using the left column check mark, it is
possible to check and delete certificates. To import a new certificate, use the mouse to click on “Choose file” and
browse to the selected file. When file is selected, use the “Load” button to load the certificate.
The certificate format supported is DER encoded binary X.509 (.cer).
Screenshot
5.10.2 Certificates list
PARAMETER
DEFAULT VALUES
DESCRIPTION
IDX
Fixed indexes
Index number
ISSUED TO
Empty
IP address – which is part of the certificate file
ISSUED TO
Empty
Organization, Company – which is part of the certificate file
VALID UNTIL
Empty
Date Time Year – which is part of the certificate file
Screenshot
By enabling “Use Only Trusted Certificates”, the certificates the base will receive from the server must be valid and
loaded into the system. If no valid matching certificate is found during the TLS connection establishment, the
connection will fail. When Use Only Trusted Certificates is disabled, all certificates received from the server will be
accepted.
NOTE: It is important to use correct date and time of the system when using trusted certificates. In case of time/date
not defined the certificate validation can fail.
5.10.3 SIP Client Certificates
To be able to establish a TLS connection in scenarios, where the server requests a client certificate, a certificate/key
pair must be loaded into the base. This is currently supported only for SIP.
To load a client certificate/key pair, both files must be selected at the same time, and it is done by pressing “Choose
files” under “Import SIP Client Certificate and Key Pair” and then select the certificate file as well as the key file at the
same time. Afterwards, press “Load”.
The certificate must be provided as a DER encoded binary X.509 (.cer) file, and the key must be provided as a binary
PKCS#8 file.
NOTE: Use Chrome for loading SIP Client Certificate