CipherSuites 127
Default SSL Configuration 128
SSL Configuration Guidelines 128
How to Configure Secure HTTP Servers and Clients 129
Configuring a CA Trustpoint 129
Configuring the Secure HTTP Server 131
Configuring the Secure HTTP Client 134
Monitoring Secure HTTP Server and Client Status 135
Additional References 136
Feature Information for Secure Socket Layer HTTP 137
CHAPTER 10
Configuring IPv4 ACLs 139
Finding Feature Information 139
Prerequisites for Configuring IPv4 Access Control Lists 139
Restrictions for Configuring IPv4 Access Control Lists 140
Information about Network Security with ACLs 141
Cisco TrustSec and ACLs 141
ACL Overview 141
Access Control Entries 142
ACL Supported Types 142
Supported ACLs 142
ACL Precedence 142
Port ACLs 143
Router ACLs 144
VLAN Maps 145
ACEs and Fragmented and Unfragmented Traffic 145
ACEs and Fragmented and Unfragmented Traffic Examples 146
ACLs and Switch Stacks 146
Active Switch and ACL Functions 146
Stack Member and ACL Functions 147
Active Switch Failure and ACLs 147
Standard and Extended IPv4 ACLs 147
IPv4 ACL Switch Unsupported Features 147
Access List Numbers 148
Numbered Standard IPv4 ACLs 149
Catalyst 2960-X Switch Security Configuration Guide, Cisco IOS Release 15.0(2)EX
viii OL-29048-01
Contents