v
Cisco Content Services Switch SSL Configuration Guide
OL-5655-01
Contents
Importing or Exporting Certificates and Private Keys 3-12
Configuring the Default SFTP or FTP Server to Import Certificates and Private
Keys
3-13
Transferring Certificates and Private Keys to the CSS 3-14
Associating Certificate and Private Key Files with Names 3-16
Associating a Certificate with a File 3-17
Associating an RSA Key Pair with a File 3-17
Associating a DSA Key Pair with a File 3-18
Associating Diffie-Hellman Parameters with a File 3-19
Verifying a Certificate Against a Key Pair 3-20
Removing Certificates and Private Keys from the CSS 3-20
CHAPTER
4 Configuring SSL Termination 4-1
Overview of SSL Termination 4-1
Creating an SSL Proxy List 4-2
Adding a Description to an SSL Proxy List 4-3
Configuring Virtual SSL Servers for an SSL Proxy List 4-4
Creating an SSL Server Index 4-6
Specifying a Virtual IP Address 4-6
Specifying a Virtual Port 4-7
Assigning Certificate, Key, and Cipher Suites for Server Authentication 4-8
Specifying the RSA Certificate Name 4-8
Specifying the RSA Key Pair Name 4-9
Specifying the DSA Certificate Name 4-9
Specifying the DSA Key Pair Name 4-10
Specifying the Diffie-Hellman Parameter Filename 4-10
Specifying Cipher Suites 4-11
Configuring Client Authentication 4-15
Enabling Client Authentication 4-16
Specifying CA Certificates for Client Certificate Verification 4-16