Specifications

Table Of Contents
Detailed Description - New Security Features
47
Detailed Description - New Security Features
(PKI) Public Key Infrastructure
PKI (Public Key Infrastructure) is a set of tools and policies deployed to enhance the
security of data communications between networking entities.
Unique Certificates for all Networked Entities
The implementation of PKI on the RMX has been enhanced to ensure that all
networked entities are checked for the presence of unique certificates by implementing
the following rules and procedures during the TLS negotiation:
•The RMX identifies itself with the same certificate when operating as a server and
as a client.
•The RMX’s management applications: RMX Web Client and RMX Manager,
identify themselves with certificates.
While establishing the required TLS connection, there is an exchange of certificates
between all entities.
Entities such as CMA and DMA that function as both client and server within the
Management Network identify themselves with the same certificate for both their
client and server functions.
The following diagram illustrates the certificate exchange during the TLS connection
procedure.