How can we help you today?
Start a new topic
Answered

SNOM D375 not registered with TLS although it receive OK message

We install SNOM D375 to register to Alcatel OXE through Squire SBC which act as a proxy using TLS transport.


OXE 192.168.1.16

SBC 192.168.2.1

SNOM Set 192.168.2.30 and 192.168.2.31


when adding Certification to SNOM it couldn't register using tls, and generate fatal error "transport error", although SIP registration trace work with no error as below

SNOM --> Register --> SBC

SBC --> trying --> SNOM

SBC ---> OK --> SNOM


I attached the wireshark and also the certification file for decryption.


Kindly Advice


Regards

Sherif

der
(1.19 KB)
der
(831 Bytes)

Best Answer

Hi Sherif,


I created ticket #16939 for this issue so that we can look at your logs and configuration in more details. I will reply to you in this ticket.


Thanks

Catalina



configuration on the snom is done as below


user: 200

password: ****

registrar: 192.168.1.16

outbound proxy: 192.168.2.1:5061;transport=tls

outbound require: 192.168.2.1

certification is installed under custom certification


error is 

[FATAL ] SIP: sip_transport_state_cb context lost

Hello Sherif,


did you also installed the custom Root CA certificate which provided the server certificate also under custom trusted certificates?


It is possible that the current TLS certificate trust chain handling inside the phones TLS stack requires import of booth: server & Root CA certificate if such are from an source not already in out-of-box public trusted Root CA's.


Looking forward to your feedback.


Thanks for your comprehension & cooperation and greetings from Berlin,

Jan



Jan Boguslawski

Product Owner Snom

Hi Jan;


Yes, I installed both Root CA.der and SVI.der on the phone, 


I wonder that SNOM generate error certification in the log file of D375, however handshake is done successfully with no error between D375 and Squire SBC.


Thanks to advice

Regards

Sherif 

Answer

Hi Sherif,


I created ticket #16939 for this issue so that we can look at your logs and configuration in more details. I will reply to you in this ticket.


Thanks

Catalina


Login or Signup to post a comment