Additional section:
In this section:
EMA TLS
profile is added to enable the selection of a certificate from the pool. The All Perspective is enhanced to allow importing of new certificates. EMA provides a tool to support certificate upload. The Certificate Upload tool is a new action item under PKI object (System > Security > PKI). Once this action item is selected, an external window is directed to the Certificate Upload Servlet. Two types of files, p12 and pem, are supported.SBC supports SHA-256 for certificate verification.
The user may configure up to three client CA certifications (using separate 'set' commands) for an EMA TLS Profile.
PC Java Configuration supports TLS 1.0 only by default. When EmaTlsProfile v1_0 is disabled, the corresponding Java Configuration for TLS support must be enabled. See below example for Windows environment:
To enable TLS support in Windows:
On SBC main screen, go to Configuration > System Provisioning > Security Configuration > Ema Tls Profile. The Ema Tls Profile window is displayed.
To edit any of the Ema Tls Profile in the list, click the radio button next to the specific Ema Tls Profile name.
The Edit Selected Ema Tls Profile window is displayed below.
Make the required changes and click Save at the right hand bottom of the panel to save the changes made.
To create a new Ema Tls Profile, click New Ema Tls Profile tab on the Ema Tls Profile List panel.
The Create New Ema Tls Profile window is displayed.
You can create only one Ema Tls Profile. Once the entry is created, the button disappears from the panel.
The following fields are displayed:
To delete any of the created Ema Tls Profile, click the radio button next to the specific Ema Tls Profile which you want to delete.
Click Delete at the end of the highlighted row. A delete confirmation message appears seeking your decision.
Click OK to remove the specific Ema Tls Profile from the list.