Mike's PBX Cookbook
Aura Certificates Renew
Update System Manager, Session Manager, and Breeze Identity certs:
- If certs have been auto renewed, reboot System Manager (SMGR)
- Reboot Session Manager and Breeze servers one at a time, ensuring to deny new service first
- Putty to each server and initTM before accept new service.
Update Communication Manager (CM) certs:
- From System Manager, go to Services → Security → Certificates - Authority
- Search End Entities, then edit CM1 cert, change status to new, enter enrollment password and save
- Go to Public Web → Create keystore
- Enroll with key length 2048 bits. P12 cert file will download
- Log into CM. Go to Miscellaneous → download files. Browse to P12 cert file that was downloaded in previous step
- Go to Security → Server application certificates. Click add
- Enter file name and password, then Open
- Check the 4 repositories, then Add
- Repeat steps 2 thru 8 for CM2
- Reboot both CMs, one at a time using Busyout, Shutdown/Reboot and Release commands. Interchange servers after inactive CM reboots
Update Application Enablement Services (AES) certs:
- From System Manager, go to Services → Security → Certificates - Authority
- Search End Entities, then edit AES cert, change status to new, enter enrollment password and save
- Go to Public Web → Create keystore
- Enroll with key length 2048 bits. P12 cert file will download
- Log into AES. Go to Security → Certificate Management → Server Certificates
- Click on import
- Go to Maintenance → Service Controller → Restart Linux
Update Avaya Aura Device Services (AADS) certs:
- From System Manager, go to Services → Security → Certificates - Authority
- Search End Entities, then edit AADS cert, change status to new, enter enrollment password and save
- Go to Public Web → Create keystore
- Enroll with key length 2048 bits. P12 cert file will download
- Log into AADS 1. (.24:8445/admin/#Application_Management)
- Go to Security Settings → Certificate Management → Identity Certificates
- Under keystore, import new downloaded cert file. Certs should be applied to all AADS servers in node
- Go to Service Control → Application Management and restart services on each AADS server
Update Avaya Aura Media Server (AMS) certs:
- From System Manager, go to Services → Security → Certificates - Authority
- Search End Entities, then edit AES cert, change status to new, enter enrollment password and save
- Go to Public Web → Create keystore
- Enroll with key length 2048 bits. P12 cert file will download
- Goto Elements → Media Server → Cluster Administration
- Click on active server under Primary Server column
- Another page will open. Go to Security → Certificate Management → Key Store
- Click import and upload new cert file
- Go to System Status → Element Status and restart services