Author Message
MikeMelnik
Joined: Nov 7, 2013
Messages: 46
Offline
Hello!

We have application that uses DMCC with port 4721 and now need to check encrypted data transmission. Is it enough for this use port 4722 or it requires something else?

Thanks
MartinFlynn
Joined: Nov 30, 2009
Messages: 1922
Online
Hi Mike,

Using encrypted data is not at all trivial. There can be a lot of preparatory work required.

You will need a Server ID Certificate & private key installed on AE Services. The certificate must have been signed by a Trusted Certificate Authority (CA). The CA's cert must be installed on AE Services and in the appropriate certificate trust store on the computer running the DMCC application.

If your AE Services is for lab use and is pre-7.0 or installed for less than 1 year, then I think you will be in luck and most of the work is already done. All you should need to do is to install the CA cert in the appropriate client trust store on your application computer. For pre-7.0, you should use the Avaya Product Root CA which is included with the SDK. For 7.0+, you should export the CA cert from AE Services using the web interface.

The method to install the certificate in the trust store will depend on your application's environment.

Certificates come with an expiry date. The Avaya Product Root CA will not expire for a couple of years but the auto-generated certificate in AE Services 7.0+ will expire 1 year after the AE Services is installed. If your AE Services was installed some time ago or if you want secure communications for longer, you will need to get a CA and generate your own Certs. This is too large a topic to be covered in a forum thread.

As a starting point, I suggest you have a look at Chapter 10 of "Avaya Aura Application Enablement Services Administration and Maintenance Guide".

Martin
Go to:   
Mobile view