3. CSR is signed by the CA resulting in certificate. Note this CA must be installed on the
AAA server to validate the client certificate.
4. Install the certificate from Real Presence Group Series web user interface.
• SCEP
This will eliminate all the manual procedure in the CSR Method. However, this needs the
infrastructure support: SCEP Server (For eg: SCEP service enabled on Microsoft Network
Device Enrollment Service or Cisco Identity Services Engine), Switch that can facilitate
automatic fallback to staging network (in which SCEP certs are provisioned) and AAA
server.
Related Links
Certificate Signing Requests on page 105
Security Certificates on page 104
How Certificates are Used on page 105
Related Links
Install Certificates on page 110
Configure Certificate Validation Settings on page 109
Firewall/NAT Traversal
You can configure your system for firewall or network address translation (NAT) traversal using the H.
460.18 and H.460.19 standards.
The following illustration shows how a service provider might provide H.460 firewall traversal between two
physical locations. In this example, the Polycom Video Border Proxy (VBP) device is on the edge of the
service provider’s network, facilitating IP calls between systems behind different firewalls.
Ref. Number Description
1 Polycom Video Border Proxy
2 Gatekeeper
Securing the System
Polycom, Inc. 101