User's Manual 114 Document #: LTRT-27045
Mediant 1000B Gateway & E-SBC
7. Click OK to confirm generation; the device generates a new self-signed certificate
displaying the new subject name, indicated by a message in the Certificate Signing
Request group:
Figure 10-9: Generated Self-Signed Certificate
8. Save the configuration with a device reset for the new certificate to take effect.
10.7 Importing Certificates and Certificate Chain into
Trusted Certificate Store
The device provides its own Trusted Root Certificate Store. This lets you manage
certificate trust. You can add up to 20 certificates to the store per TLS Context (but this
may be less depending on certificate file size).
The trusted store can also be used for certificate chains. A certificate chain is a sequence
of certificates where each certificate in the chain is signed by the subsequent certificate.
The last certificate in the list of certificates is the Root CA certificate, which is self-signed.
The purpose of a certificate chain is to establish a chain of trust from a child certificate to
the trusted root CA certificate. The CA vouches for the identity of the child certificate by
signing it. A client certificate is considered trusted if one of the CA certificates up the
certificate chain is found in the server certificate directory.
Figure 10-10: Certificate Chain Hierarchy