<div dir="ltr">You can use self-signed certificates now instead with the command-line tools.  There's still some hardware tokens if you'd rather have something physical rather than worrying about backing up the certificates.<div><br></div><div>You can just run "utils ctl set-cluster mixed-mode" and then restart CallManager/TFTP on all nodes if you want to use self-signed certs.</div><div><br></div><div>Here's the 10.x security guide- <a href="https://www.cisco.com/c/en/us/td/docs/voice_ip_comm/cucm/security/10_0_1/secugd/CUCM_BK_C68276B4_00_cucm-security-guide-100/CUCM_BK_C68276B4_00_cucm-security-guide-100_chapter_0100.html">https://www.cisco.com/c/en/us/td/docs/voice_ip_comm/cucm/security/10_0_1/secugd/CUCM_BK_C68276B4_00_cucm-security-guide-100/CUCM_BK_C68276B4_00_cucm-security-guide-100_chapter_0100.html</a></div></div><div class="gmail_extra"><br><div class="gmail_quote">On Mon, Aug 28, 2017 at 8:25 PM, Matthew Loraditch <span dir="ltr"><<a href="mailto:MLoraditch@heliontechnologies.com" target="_blank">MLoraditch@heliontechnologies.com</a>></span> wrote:<br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex">





<div lang="EN-US" link="#0563C1" vlink="#954F72">
<div class="m_-7272686339650062170WordSection1">
<p class="MsoNormal">We have a client who is requesting a secure cluster. Never done it before. Do those hardware tokens still exist? It appears not and it’s all software based now?<u></u><u></u></p>
<p class="MsoNormal">Any fantastic blogs or step by step guides that folks have used? The documentation is refreshingly mind numbing.<u></u><u></u></p>
<p class="MsoNormal"><u></u> <u></u></p>
<p class="MsoNormal">Thanks!<span class="HOEnZb"><font color="#888888"><u></u><u></u></font></span></p><span class="HOEnZb"><font color="#888888">
<p class="MsoNormal">-Matthew<u></u><u></u></p>
</font></span></div>
</div>

<br>______________________________<wbr>_________________<br>
cisco-voip mailing list<br>
<a href="mailto:cisco-voip@puck.nether.net">cisco-voip@puck.nether.net</a><br>
<a href="https://puck.nether.net/mailman/listinfo/cisco-voip" rel="noreferrer" target="_blank">https://puck.nether.net/<wbr>mailman/listinfo/cisco-voip</a><br>
<br></blockquote></div><br></div>