<p class="MsoNormal">Hi Masters,</p>
<p class="MsoNormal"> </p>
<p class="MsoNormal">I'm testing the TLS on FS to work with softphone.</p>
<p class="MsoNormal"> </p>
<p class="MsoNormal">followed the wiki
(<a href="http://wiki.freeswitch.org/wiki/Tls#EyeBeam.2FBria_Setup">http://wiki.freeswitch.org/wiki/Tls#EyeBeam.2FBria_Setup</a>),</p>
<p class="MsoNormal"> </p>
<p class="MsoNormal">I generated the CA (root) certificate by below command,
however, when i install the root certificate on windows,<b> it prompt me that the
valid period is for only one month</b>. I tried to change the "DAYS=2190"
inside the "gentls_cert" script, but it only effect on server
certificate(agent.pem) but not root certificate <b>(cafile.pem</b>), Could anyone
please help me, appreciated for your any advise!!</p>
<p class="MsoNormal"> </p>
<p class="MsoNormal"><b>./gentls_cert setup -cn <a href="http://fs.audiocodes.com.cn">fs.audiocodes.com.cn</a> -alt
DNS:<a href="http://fs.audiocodes.com.cn">fs.audiocodes.com.cn</a> -org <a href="http://audiocodes.com.cn">audiocodes.com.cn</a></b></p>
<p class="MsoNormal"><i> </i></p><p class="MsoNormal"><i>below is from wiki.<br></i></p>
<p class="MsoNormal"><i>This will create CA certificate and key along with in
conf/ssl/CA directory(cacert.pem, cakey.pem) and certificate in the conf/ssl
folder(cafile.pem).</i></p>
<p class="MsoNormal"><i> [ Note: The name given for -cn and -alt should be the same
as the DNS name of your freeswitch installation and used as the registrar name
on the phone (at least on Polycoms). ] <b><u>You can change the "DAYS=2190"
line in the gentls_cert file to make the certificate valid for longer time.</u></b>
However making it too long has some wrap around problem, it appears.</i></p><p class="MsoNormal"><br></p><p class="MsoNormal"><font size="6"><b>To short, I want to change the valid period longer for the cafile.pem , thanks!!</b></font><i><br>
</i></p>
<br>-- <br>Regards,<br>Charles<br><br>