Let's Encrypt - Streamlined?

Status
Not open for further replies.

Bob Denny

SOHO User
Joined
Feb 21, 2009
Messages
195
Reaction score
17
I read 3CX in Cooperation with Certificate Authority Let’s Encrypt, in which it says
3CX, working with Let’s Encrypt, is able to provide trusted security certificates for its customers. By managing this process, which can be time-consuming and costly, 3CX provides an inestimable service at no cost to its partners and end-users. Users get the certificates delivered automatically and immediately – it is no longer necessary to work with third-party certificate providers who can take days and even weeks to provide the certificates.
I have combed the Version 15.5 Administration Manual (which can't be searched :-(( ) and can't find anything on this. I did click on the "For more information click here" in the admin UI Security Settings, Secure SIP tab, and got to How to Configure Secure SIP – TLS but that shows how to use SimpleCA to create a bogus cert. I am interested in using Let's Encrypt. Where is the "streamlined process" info? Did I miss it during the PBX Express process maybe? Is it available after the fact (I used PBX Express on Google Cloud). I am a 3CX Professional licensee.
 
Unfortunately the LE integration is strictly for the web interface. It has nothing to do with SIP-TLS although it certainly should have with the original marketing language touting 3CX as the 'most secure'. I'm hoping the LE integration will be extended to support SIP-TLS
 
let me ensure you that we are on it to re-use it for TLS also... but there us much work attached to it. So dont expect this tomorrow...
 
  • Like
Reactions: cobaltit
Ah, OK. Sorry for the misunderstanding. I definitely understand the work involved. At present, it appears that 3CX requires a cert with the common name set to the "inside" IP address of the switch. No CA will issue certs for an IP address.
 
I have combed the Version 15.5 Administration Manual (which can't be searched :-(( ) and can't find anything on this. I did click on the "For more information click here" in the admin UI Security Settings, Secure SIP tab, and got to How to Configure Secure SIP – TLS but that shows how to use SimpleCA to create a bogus cert.
https://www.3cx.com/docs/secure-sip/#h.a85adzue8m6w
I also wonder how we can import certificate in Windows client when there is no such button?:confused:
 
Sp3 will have it inbuilt.
If you want pm me and I give you a test build. You will install and find out that when you setup 3CX, the lets encrypt certs will be used for TLS..
 
  • Like
Reactions: poynter.net
let me ensure you that we are on it to re-use it for TLS also... but there us much work attached to it. So dont expect this tomorrow...

This is welcome news!
 
Status
Not open for further replies.

Forum statistics

Threads
111,879
Messages
589,531
Members
164,731
Latest member
hrhrohit