We may verify the content of the new CA certificates:
Organizational Unit Name (eg, section) :Ĭommon Name (eg, YOUR name) :My private CA Organization Name (eg, company) :My private CA State or Province Name (full name) :Slovakia If you enter '.', the field will be left blank. There are quite a few fields but you can leave some blankįor some fields there will be a default value, What you are about to enter is what is called a Distinguished Name or a DN.
You are about to be asked to enter information that will be incorporated Then generating start, during the processing the system will ask you for certificates protection (put your password there) and will ask for some questions (country, city and etc.) The openssl req -new … will generate self-signed CA (cartificate authority) certificate valid for 10 years. Openssl req -new -x509 -extensions v3_ca -keyout key.pem -out cert.pem -days 3650 If you do not have certificates you can use the “openssl” tool to generate the certificate. We will use the guide Create Certificates to be used with Kamailio.Ĭreating suitable certificates for Kamailio is just as simple as configuring Apache with SSL/TLS. The dig dns utility have to return correct IP address pointing to your serverĪs a first step we have to generate certificates by which the SIP proxy will be identified during TLS connection setup. Next, we have to add to your dns server correct SRV record for your SIPS TLS (SIP Secure) server.
EYEBEAM 1.5 18.2 DOWNLOAD INSTALL
TLS is an optional part of the kamailio core and does not require special module installing.īut we have to install kamailio tls module with On the Kamailio site there is a mention, that Installed and working Kamailio (OpenSER) 3.1.0 server.In previous articles we have:Ģ) added Mysql support for persistance location storageģ) SIREMIS web management interface for our kamailio server.Ĥ) configured IM and presence service on Kamailio 3.1 – HowtoĪnd now we will configure TLS support. This article continue on series of articles about the Kamailio 3.1.x SIP proxy deployed on debian lenny and its features.