McDewey

Multi-vendor documentation library · semantic search · MCP endpoint at /mcp

Page 34

↗ View in doc context
page
34
source
unity-connection/v15/os-admin/os-admin.md
chunk_id
unity-connection::v15::os-admin::os-admin::29

For More Information Task For all certificate types, restart the corresponding service: • If you update Tomcat certificate, you must restart the Cisco tomcat service, Connection IMAP Server, Cisco Dirsync service, Connection Jetty service, SMTP service and Connection Conversation Manager service. • If you update tomcat-ECDSA certificate, you must also restart the Connection Conversation Manager service. See the Cisco Unified Communications Manager Serviceability Administration Guide for information about restarting services. Restart the services that are affected by the new certificate. Step 8 Generating a Certificate Signing Request To regenerate a certificate signing request, follow this procedure: Step 1 Select Security > Certificate Management. The Certificate List window displays. Step 2 Use the find control to filter the certificate list. Step 3 Click Generate CSR, the Generate Certificate Signing Request dialog box opens. Step 4 From the Certificate Purpose drop-down list box, select the required certificate purpose. Step 5 From the Distribution drop-down list box, select the required distribution list item. The Multi-server (SAN) option is available only when you select tomcat or tomcat-ECDSA from the Certificate Purpose drop-down list box. Click Generate CSR. By default, the system populates the CN field with the server FQDN (or hostname). You can modify the value, if required. For self-signed certificate, the CN is not configurable. Note Step 6 For Multi-server (SAN), additional domains can be added in Subject Alternate Names field. Step 7 From the Key Length drop-down list box, select value as per the certificate purpose. • If tomcat or ipsec is the certificate purpose, select 1024, 2048, 3072, or 4096. • If tomcat-ECDSA is the certificate purpose, select 256, 384 or 521. Step 8 From the Hash Algorithm drop-down list box, select as per the certificate purpose. Cisco Unified Communications Operating System Administration Guide for Cisco Unity Connection Release 15 28 Security Generating a Certificate Signing Request