vii
Cisco Content Services Switch SSL Configuration Guide
OL-5655-01
Contents
Specifying the SSL Session ID Cache Size 4-50
Activating the SSL Service 4-51
Suspending the SSL Service 4-52
Configuring a Content Rule for SSL Termination 4-52
CHAPTER
5 Configuring Back-End SSL 5-1
Overview of Back-End SSL 5-1
Creating an SSL Proxy List 5-2
Adding a Description to an SSL Proxy List 5-3
Configuring Back-End SSL Servers in an SSL Proxy List 5-3
Creating a Back-End SSL Server in an SSL Proxy List 5-5
Configuring a Back-End SSL Server Type 5-5
Configuring the VIP Address for an SSL Back-End Server 5-6
Configuring the Virtual Port 5-6
Configuring the Server IP Address 5-7
Configuring the Server Port 5-7
Configuring SSL Version 5-8
Configuring the Available Cipher Suites 5-8
Configuring SSL Session Cache Timeout 5-9
Configuring SSL Session Handshake Renegotiation 5-10
Configuring TCP Virtual Client Connections Timeout Values 5-11
Specifying a TCP SYN Timeout Value for the Virtual Client
Connection
5-11
Specifying a TCP Inactivity Timeout for a Virtual Client Connection 5-12
Configuring TCP Server-Side Connection Timeout Values on the SSL
Module
5-13
Specifying a TCP SYN Timeout Value for a Server-Side Connection 5-13
Specifying a TCP Inactivity Timeout for a Server-Side Connection 5-14
Specifying the Nagle Algorithm for SSL TCP Connections 5-15
Specifying the TCP buffering for SSL TCP Connections 5-16