Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

  • SQL/3306 - DataBase: that's the remote access to the DBE (Data Base Engine), useful for exporting views and access data used by the appliance
  • HTTPS - Management Console: here you have the very same web administrative console you are actually using
  • SSH - Secure Shell: the well known text console for remote administration. This is useful for extraordinary management tasks.
  • SIP/TLS: VoIP service (signaling part) over TLS connection. Long story short: Secure VoIP.
  • SIP/UDP: dsfafas part of the VoIP service used to connect the PrivateServer appliance to another PBX
  • TCP/5666: by activating this service it becomes possible to reach the Nagios monitoring service on the appliance.
  • HTTPS/SmartPhone Web Service: Services provided by the PrivateServer in order to make the PrivateGSM clients work fine:
    • the licence cache Licence Cache 
    • Presence

Please note that the configuration shown in 

Xref
AnchorNameapplication_matrix
 represents a likely production one as suggested in (TO BE ADDED THE SUGGESTED CONFIUGURATION PAGE)

...

As shown in the above

Xref
AnchorNamecertificates_management
, two are the services that need a valid certificate in order to adslfknaslknasfguarantee the proper security levels:

  1. HTTPS - Management Console

...

  1. SIP/TLS

...

In both cases the goal is to avoid MITM (Man In The Middle) attacks and simply to identify the server without possible mistakes. In case number 1 the certificate identifies the server in order to Administration Web Interface. In case number 2 Asterisk or Secure VoIP

Warning

Please consider that the certificates are strictly bounded to the name they are released for, so you make sure you assigned via DNS the proper name to the IP where the service is published

You can load as many certificates as you need and then assign one of them to one of the two above services, as it suites you better. After you're done, just press the "Update" button.

...

2.3 Provisioning

The third part is about configuring the hostnames that would be used for the provisioning. 

...