16-23
Cisco ASA Series Firewall ASDM Configuration Guide
Chapter 16 Using the Cisco Unified Communication Wizard
Working with Certificates in the Unified Communication Wizard
Working with Certificates in the Unified Communication Wizard
This section includes the following topics:
• Exporting an Identity Certificate, page 16-23
• Installing a Certificate, page 16-23
• Generating a Certificate Signing Request (CSR) for a Unified Communications Proxy, page 16-24
• Saving the Identity Certificate Request, page 16-25
• Installing the ASA Identity Certificate on the Mobility Advantage Server, page 16-26
• Installing the ASA Identity Certificate on the Presence Federation and Cisco Intercompany Media
Engine Servers, page 16-26
Exporting an Identity Certificate
The Cisco Mobility Advantage Proxy, Cisco Presence Federation Proxy, or Cisco Intercompany Media
Engine Proxy require that you export the ASA identity certificate to install on the Cisco Mobility
Advantage server, Cisco Presence Federation server, and Cisco Unified Communications server,
respectfully.
You use the wizard to export a self-signed identity certificate. The identity certificate has all associated
keys and is in PKCS12 format, which is the public key cryptography standard. When configuring a
Unified Communications proxy by using the wizard, you click the Generate and Export ASA’s Identify
Certificate button while in the local-side or server-side certificate management step of the wizard. The
Export certificate dialog box appears.
From the Export certificate dialog box, perform these steps:
Step 1 Enter the name of the PKCS12 format file to use in exporting the certificate configuration. Alternatively,
click Browse to display the Export ID Certificate File dialog box to find the file to which you want to
export the certificate configuration.
Step 2 Click Export Certificate to export the certificate configuration.
An information dialog box appears informing you that the certificate configuration file has been
successfully exported to the location that you specified.
You complete the configuration of the Cisco Mobility Advantage Proxy, Cisco Presence Federation
Proxy, or Cisco Intercompany Media Engine Proxy, you must import the generated ASA identify
certificate in to the Cisco Mobility Advantage server, Cisco Presence Federation server, and Cisco
Unified Communications server, respectfully, depending on which proxy you are configuring.
See the documentation for the for each of these products for information about importing an identity
certificate into each.
Installing a Certificate
When configuring certificates for the Phone Proxy, Cisco Mobility Advantage Proxy, the Cisco Presence
Federation Proxy, and Cisco Intercompany Media Engine Proxy, you must install the certificates from
the Cisco Unified Communications Manager servers, the Cisco Mobility Advantage server, the Cisco