Chapter 8 Examples of CSS SSL Configurations
8-14
Cisco Content Services Switch SSL Configuration Guide
OL-5655-01
The following configuration includes commands containing default values that do
not appear in the running configuration. To identify these commands, they appear
in italic.
!*************************** GLOBAL ***************************
logging commands enable
ssl associate dsakey dsakey dsakey.pem
ssl associate rsakey rsakey rsakey.pem
ssl associate cert rsacert rsacert.pem
ssl associate dhparam dhparams dhparams.pem
ftp-record ssl_record 161.44.174.127 anonymous des-password
deye2gtcld1b6feeeebabfcfagyezc5f /
!************************** CIRCUIT **************************
circuit VLAN1
ip address 192.168.8.254 255.255.255.0
circuit VLAN2
ip address 192.168.7.254 255.255.255.0
!*********************** SSL PROXY LIST ***********************
ssl-proxy-list test
ssl-server 111
ssl-server 111 vip address 192.168.5.5
ssl-server 111 port 443
ssl-server 111 rsacert rsacert
ssl-server 111 rsakey rsakey
ssl-server 111 cipher rsa-with-rc4-128-md5 192.168.5.5 80
active
ssl-server 2
ssl-server 2 vip address 192.28.4.4
ssl-server 2 port 443
ssl-server 2 rsacert rsacert
ssl-server 2 rsakey rsakey
ssl-server 2 cipher rsa-with-rc4-128-md5 192.28.4.4 8080
active
backend-server 3
backend-server 3 ip address 192.168.7.2
backend-server 3 port 8080
backend-server 3 server-ip 192.168.7.2
backend-server 3 rsacert rsacert
active