Use DIGICERT!  You can get a wildcard cert from them, and use it over and over. 
 So you just generate the cert based on the CSR from each app and it loads 
right in.

Works great on CUCM, CUC, CUP, & Expressway!



-----Original Message-----
From: cisco-voip [mailto:[email protected]] On Behalf Of Gary 
Parker
Sent: Thursday, February 05, 2015 9:24 AM
To: Cisco VoIP Group
Subject: [cisco-voip] Recommendation For Certificate Provider For 
Jabber/Presence Use

Hi folks, I’m in the process of replacing a load of self-signed certs on my 
8.6.x CUCM, CUC and CUP servers.

I’ve been having issues getting certs with the correct KeyUsage extensions from 
our current provider and wondered if anyone could recommend a company who can 
provide certificates that honour the requirements in the CSRs generated by the 
Cisco Unified Communications servers.

I’m particularly interested in certificates that contain the "digitalSignature, 
nonRepudiation,keyEncipherment,dataEncipherment” extensions as per:

http://blog.warcop.com/2015/01/22/cisco-jabber-certificate-warning-again/

Jabber for Windows clients 9.2.5 and greater are flagging invalid certificates 
on our currently installed TERENA certificates.

---
/-Gary Parker----------------------------------f--\
|     Unified Communications Service Manager      |
n       Loughborough University IT Services       |
|     Tel: +441509635635  Mob: +447989172258      o
|     http://delphium.lboro.ac.uk/pubkey.txt      |
\r----------------------------------------------d-/



_______________________________________________
cisco-voip mailing list
[email protected]
https://puck.nether.net/mailman/listinfo/cisco-voip

Reply via email to