TLS encryption between
the IM and Presence Service and LCS, each LCS
server must have a signed security certificate. This signed certificate, along
with the root certificate of the Certificate Authority (CA) that signed the
certificate, must be installed on each LCS server.
recommends that LCS and
the IM and Presence Service nodes share the same
CA. If not, the root certificate of the CA that signed the
IM and Presence Service certificates must
also be installed on each LCS server.
the root certificate of the LCS CA is already installed on each LCS server.
Therefore, if LCS and the
IM and Presence Service share the same CA,
there may be no need to install a root certificate. However, if a root
certificate is required, see the following details.
If you are
using Microsoft Certificate Authority, refer to the following procedures in the
IM and Presence Service
Cisco Unified Communications Manager
for information about installing the root
certificate from the Microsoft Certificate Authority onto LCS:
- Downloading the CA
- Installing the CA
If you are
using an alternative CA, the following procedure is a generic procedure for
installing root certificates onto LCS servers. The procedure for downloading
the root certificate from the CA differs depending on your chosen CA.