Hi Sirs:
I have the same problem described here: I am using ASBCE r7.2.2 and IPO r11.0.4. I created an Identity Certificate for SBC (*.p12 first, then splitted to SBC_ID.crt and SBC_ID.key) in IPO Web Manager using its Public IP Address (B1 port), Subject=FQDN-SBC, SAN=DNS:FQDN-SBC,IP
ublicIPAddress-SBC. I uploaded SBC_ID.crt (plus signature) to SBC. Then I configured a TLS Server Profile (using SBC_ID.crt and SBC_ID.key - enabling all TLS 1.x versions). I created a Signaling Interface (external) using that TLS Server profile and finally I configured a Subscriber Flow based on that Signaling Interface (external).
For testing, I used Avaya Communicator r2.1 softphone. First, I tested a connection from softphone (through SBC) to IPO with TCP 5060. It works fine as expected. When I change to TLS 5061 (and running traceSBC), I see TLS Client Hellos coming from softphone and arriving at SBC (B1 port) but no TLS Server Hellos from SBC (no answer at all). Please check attached screenshots. I had a similar problem in Aura, it was the TLS version in SM but in this case I allowed all versions in SBC (??). I have tried many ways to regenerate the SBC Identity Certificate and TLS Server profile without success.
Please help me or guide me with an example (a screenshot of your IDENTITY CERTIFICATE.
I have the same problem described here: I am using ASBCE r7.2.2 and IPO r11.0.4. I created an Identity Certificate for SBC (*.p12 first, then splitted to SBC_ID.crt and SBC_ID.key) in IPO Web Manager using its Public IP Address (B1 port), Subject=FQDN-SBC, SAN=DNS:FQDN-SBC,IP
For testing, I used Avaya Communicator r2.1 softphone. First, I tested a connection from softphone (through SBC) to IPO with TCP 5060. It works fine as expected. When I change to TLS 5061 (and running traceSBC), I see TLS Client Hellos coming from softphone and arriving at SBC (B1 port) but no TLS Server Hellos from SBC (no answer at all). Please check attached screenshots. I had a similar problem in Aura, it was the TLS version in SM but in this case I allowed all versions in SBC (??). I have tried many ways to regenerate the SBC Identity Certificate and TLS Server profile without success.
Please help me or guide me with an example (a screenshot of your IDENTITY CERTIFICATE.