8-9
Cisco Content Services Switch SSL Configuration Guide
OL-5655-01
Chapter 8 Examples of CSS SSL Configurations
Figure 8-4 Transparent Proxy Configuration with Two SSL Modules
!*************************** GLOBAL ***************************
logging commands enable
ssl associate dsakey dsakey dsakey.pem
ssl associate rsakey rsakey rsakey.pem
ssl associate cert rsacert rsacert.pem
ssl associate dhparam dhparams dhparams.pem
ftp-record ssl_record 161.44.174.127 anonymous des-password
deye2gtcld1b6feeeebabfcfagyezc5f /
78267
Client A
Router
Client IP address
172.16.6.58
Source = 172.16.6.58
Destination = 192.168.5.5
Source = 172.16.6.62
Destination = 192.168.5.5
Client IP address
172.16.6.62
ServerABC
192.168.7.1
ServerDEF
192.168.7.2
ServerGHI
192.168.7.3
Layer 5 http-rule
Layer 5 ssl-rule
SSL
Acceleration
Module 2
SSL
Acceleration
Module 1
CSS 11506
Client B
Source = 172.16.6.58
Destination = 192.168.7.1
Source = 172.16.6.62
Destination = 192.168.7.2
Internet
VIP = 192.168.5.5
Ethernet
connection