User`s manual

H.323 User's Manual 13. Security
Version 5.0 331 December 2006
If the Telnet server is set to SSL mode, a special Telnet client is required on your PC to
connect to the Telnet interface over a secured connection; examples include C-Kermit for
UNIX, Kermit-95 for Windows, and AudioCodes' acSSLTelnet utility for Windows (that
requires prior installation of the free OpenSSL toolkit). Contact AudioCodes to obtain the
acSSLTelnet utility.
13.2.3 Server Certificate Replacement
The Mediant 1000 is supplied with a working SSL configuration consisting of a unique self-
signed server certificate. If an organizational Public Key Infrastructure (PKI) is used, you
may wish to replace this certificate with one provided by your security administrator.
¾ To replace the Mediant 1000 self-signed certificate, take these 9
steps:
1. Your network administrator should allocate a unique DNS name for the Mediant 1000
(e.g., dns_name.corp.customer.com). This name is used to access the device, and
should therefore be listed in the server certificate.
2. Open the ‘Certificates’ screen (Advanced Configuration menu > Security Settings
submenu > Certificates option); the ‘Certificates’ screen is displayed (Figure 13-9).
Figure 13-9: Certificate Signing Request Screen
3. In the Subject Name field, enter the DNS name and click Generate CSR. A textual
certificate signing request, that contains the SSL device identifier, is displayed.