Is CA's certificate mandatory for SD trunking with TLS?
Hi Communities,
Could you give me comments about NN4500SD trunking with TLS?
I have referred below:
[[environment]]
SIP network
(UE)--(SIP Proxy)---[SD-A]----(SDtrunking, TLS)----[SD-B]---(SIP proxy)--UA
Certification Authority
[CA-A] [CA-B]: self Certification Authority(by OpenSSL )
SD-A have a certificate issued by CA-A.
SD-B have a certificate issued by CA-B.
When SD-A connects to SD-B using TLS, SD-B gives the certificate of SD-B. After that SD-A validates the certificate of SD-B and SD-A says below in log.sipd:
Jun X XX:XX:XX.XXX [SERVICE] TLS:VerifyCallback: SSL returns unable to get issuer. Wait for TLSEngine to check its database.