Contents
vi
Cisco Content Services Switch SSL Configuration Guide
OL-5655-01
Configuring a CRL Record 4-17
Assigning a CRL Record to the Virtual SSL Server 4-19
Handling Client Authentication Failures 4-19
Configuring HTTP Header Insertion 4-20
Inserting Client Certificate Information 4-21
Inserting Server Certificate Information 4-25
Inserting Session Information 4-30
Adding a Prefix to the Fields Inserted in the HTTP Header 4-32
Inserting a Static Text String 4-32
Specifying SSL or TLS Version 4-33
Terminating a Client Connection with a TCP FIN Message Only 4-34
Specifying Secure URL Rewrite 4-34
Specifying SSL Session Cache Timeout 4-37
Specifying SSL Session Handshake Renegotiation 4-38
Configuring the Delay Time for SSL Queued Data 4-40
Specifying SSL TCP Client-Side Connection Timeout Values 4-41
Specifying a TCP SYN Timeout Value (Client-Side Connection) 4-41
Specifying a TCP Inactivity Timeout Value (Client-Side Connection) 4-42
Specifying SSL TCP Server-Side Connection Timeout Values 4-42
Specifying a TCP SYN Timeout Value (Server-Side Connection) 4-43
Specifying a TCP Inactivity Timeout Value (Server-Side Connection) 4-43
Specifying the Nagle Algorithm for SSL TCP Connections 4-44
Specifying the TCP Buffering for SSL TCP Connections 4-45
Activating and Suspending an SSL Proxy List 4-46
Configuring a Service for SSL Termination 4-47
Creating an SSL Service 4-48
Specifying the SSL Acceleration Service Type 4-48
Adding an SSL Proxy List to an SSL Termination Service 4-49
Specifying the SSL Module Slot 4-49
Disabling Keepalive Messages for the SSL Module 4-50