nerdexam
Cisco

350-801 · Question #524

A collaboration engineer needs to secure the connection between Cisco UCM and Cisco Unity Connection by using TLS. How must the engineer obtain a CA signed certificate for the connection?

The correct answer is C. Generate and download a Certificate Signing Request from each server and provide the CSR to. To secure the connection between Cisco Unified Communications Manager (UCM) and Cisco Unity Connection using TLS, a Certificate Signing Request (CSR) must be generated on each server. The CSR is then submitted to a Certificate Authority (CA) to obtain a signed certificate. Once…

On-Premises Call Control

Question

A collaboration engineer needs to secure the connection between Cisco UCM and Cisco Unity Connection by using TLS. How must the engineer obtain a CA signed certificate for the connection?

Options

  • AGenerate a Certificate Signing Request and install the CSR in the trust store of Cisco UCM and
  • BLog in to the website of the CA and complete a certificate request form for each server.
  • CGenerate and download a Certificate Signing Request from each server and provide the CSR to
  • DProvide the CA with the hostname and IP addresses of each server in the cluster.

How the community answered

(24 responses)
  • A
    4% (1)
  • B
    8% (2)
  • C
    71% (17)
  • D
    17% (4)

Explanation

To secure the connection between Cisco Unified Communications Manager (UCM) and Cisco Unity Connection using TLS, a Certificate Signing Request (CSR) must be generated on each server. The CSR is then submitted to a Certificate Authority (CA) to obtain a signed certificate. Once the certificate is received, it is installed on the respective server. 1. Generate the CSR: On both Cisco UCM and Cisco Unity Connection servers, generate a CSR from their administrative interfaces. The CSR contains essential details, such as the server's hostname and public key. 2. Submit the CSR to the CA: Provide the CSR to a trusted Certificate Authority (internal or external). The CA verifies the identity of the server and signs the certificate. 3. Download and Install the Signed Certificate: After receiving the signed certificate from the CA, install it on each server. This certificate will be used to establish a secure TLS connection. 4. Install the CA Certificate: Ensure the CA's root certificate is installed in the trust store of both Cisco UCM and Cisco Unity Connection to establish mutual trust. By following the process of generating a CSR and submitting it to a CA, the engineer ensures that the certificates are correctly signed and installed, securing the connection between Cisco UCM and Cisco Unity Connection using TLS.

Topics

#TLS Security#Certificate Management#CSR#Cisco UCM

Community Discussion

No community discussion yet for this question.

Full 350-801 Practice