The 10.0(1) technote says phones have TVS as a secondary way to authenticate files, whichever certificate is regenerated first. This is why changing one ITL-relevant certificate at a time is recoverable.

Checked 2026-09-25

Regardless of which certificate is generated first, the phone has its secondary method to authenticate files
Vendor
Cisco
Product
Unified Communications Manager
Subsystem
tvs
Deployment
on-premises
Region
not restricted
Release range
10.0(1) and later
Checked
2026-09-25

Sources

Cite this note

APA

WarmTransfer. (2026, September 25). Unified CM certificate renewal: source note cucm-certificate-renewal-tvs-secondary-auth. WarmTransfer. https://warmtransfer.net/knowledge/claims/cucm-certificate-renewal-tvs-secondary-auth

BibTeX

@misc{warmtransfer-claim-cucm-certificate-renewal-tvs-secondary-auth,
  title  = {Unified CM certificate renewal: source note cucm-certificate-renewal-tvs-secondary-auth},
  author = {{WarmTransfer}},
  year   = {2026},
  url    = {https://warmtransfer.net/knowledge/claims/cucm-certificate-renewal-tvs-secondary-auth},
  note   = {Source note cucm-certificate-renewal-tvs-secondary-auth, checked 2026-09-25}
}

Read in context