User's Manual

Chapter 3: Managing Security
Introduction
Trust Management provisions certificates to applications enabling them to have a secure inter-
element communication. It provides Identity and Trusted (root) certificates with which mutually
authenticated TLS sessions can be established.
For administering third-party trusted certificates for Session Manager, a "Session Manager"
application needs to be added for a specific Session Manager or Branch Session Manager
instance. This application is administered with the “Management Access Point” IP address of
the Session Manager instance. Using the Trust Management service, you can perform the
following operations for the application instance:
• View trusted and identity certificates currently installed on the Session Manager server.
• Add and remove trusted certificates installed on the Session Manager server.
Note:
Adding, removing and replacing of certificates is not currently supported for either Identity
Certificates or for non-third party certificates that is the default certificates provided by Avaya
cannot be changed.
Setting SCEP enrollment password
About this task
You can use this functionality to generate the simple certificate enrollment password (SCEP)
for adopting products. The adopting products require the SCEP password to request
certificates from Trust Management.
Procedure
1. On the System Manager console, under Services, click Security.
2. Click Certificates > Enrollment Password in the left navigation pane.
3. On the Enrollment Password page, select the expiration of password in hours in the
Password expires in field.
Administering Avaya Aura
®
Session Manager November 2010 43