SNOM D375 not registered with TLS although it receive OK message
S
Sherif Abdelhakim
started a topic
about 2 years ago
We install SNOM D375 to register to Alcatel OXE through Squire SBC which act as a proxy using TLS transport.
OXE 192.168.1.16
SBC 192.168.2.1
SNOM Set 192.168.2.30 and 192.168.2.31
when adding Certification to SNOM it couldn't register using tls, and generate fatal error "transport error", although SIP registration trace work with no error as below
SNOM --> Register --> SBC
SBC --> trying --> SNOM
SBC ---> OK --> SNOM
I attached the wireshark and also the certification file for decryption.
certification is installed under custom certification
error is
[FATAL ] SIP: sip_transport_state_cb context lost
J
Jan Boguslawski
said
about 2 years ago
Hello Sherif,
did you also installed the custom Root CA certificate which provided the server certificate also under custom trusted certificates?
It is possible that the current TLS certificate trust chain handling inside the phones TLS stack requires import of booth: server & Root CA certificate if such are from an source not already in out-of-box public trusted Root CA's.
Looking forward to your feedback.
Thanks for your comprehension & cooperation and greetings from Berlin,
Jan
Jan Boguslawski
Product Owner Snom
S
Sherif Abdelhakim
said
about 2 years ago
Hi Jan;
Yes, I installed both Root CA.der and SVI.der on the phone,
I wonder that SNOM generate error certification in the log file of D375, however handshake is done successfully with no error between D375 and Squire SBC.
Thanks to advice
Regards
Sherif
C
Catalina Moritz
said
about 2 years ago
Answer
Hi Sherif,
I created ticket #16939 for this issue so that we can look at your logs and configuration in more details. I will reply to you in this ticket.
Sherif Abdelhakim
We install SNOM D375 to register to Alcatel OXE through Squire SBC which act as a proxy using TLS transport.
OXE 192.168.1.16
SBC 192.168.2.1
SNOM Set 192.168.2.30 and 192.168.2.31
when adding Certification to SNOM it couldn't register using tls, and generate fatal error "transport error", although SIP registration trace work with no error as below
SNOM --> Register --> SBC
SBC --> trying --> SNOM
SBC ---> OK --> SNOM
I attached the wireshark and also the certification file for decryption.
Kindly Advice
Regards
Sherif
Hi Sherif,
I created ticket #16939 for this issue so that we can look at your logs and configuration in more details. I will reply to you in this ticket.
Thanks
Catalina
- Oldest First
- Popular
- Newest First
Sorted by Oldest FirstSherif Abdelhakim
configuration on the snom is done as below
user: 200
password: ****
registrar: 192.168.1.16
outbound proxy: 192.168.2.1:5061;transport=tls
outbound require: 192.168.2.1
certification is installed under custom certification
error is
[FATAL ] SIP: sip_transport_state_cb context lost
Jan Boguslawski
Hello Sherif,
did you also installed the custom Root CA certificate which provided the server certificate also under custom trusted certificates?
It is possible that the current TLS certificate trust chain handling inside the phones TLS stack requires import of booth: server & Root CA certificate if such are from an source not already in out-of-box public trusted Root CA's.
Looking forward to your feedback.
Thanks for your comprehension & cooperation and greetings from Berlin,
Jan
Jan Boguslawski
Product Owner Snom
Sherif Abdelhakim
Hi Jan;
Yes, I installed both Root CA.der and SVI.der on the phone,
I wonder that SNOM generate error certification in the log file of D375, however handshake is done successfully with no error between D375 and Squire SBC.
Thanks to advice
Regards
Sherif
Catalina Moritz
Hi Sherif,
I created ticket #16939 for this issue so that we can look at your logs and configuration in more details. I will reply to you in this ticket.
Thanks
Catalina
-
LDAP and country code
-
Settings are changed when user logs on
-
USB Bluetooth compatibility for D725
-
Low volume with Plantronics Headset
-
Change Log for FW 8.8.3.32
-
Subscriptions failing after time since upgrade to 8.7.5.28
-
SNOM 870 - INBAND DTMF
-
SNOM 320 + Headset Plantronics CS540A with Snom EHS
-
Configure Settings - Set all to Read Only
-
Can't enter "+" sign in directory via WUI
See all 715 topics