EasyManuals Logo

Cisco IOS XR User Manual

Cisco IOS XR
254 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #171 background imageLoading...
Page #171 background image
SC-159
Cisco IOS XR System Security Configuration Guide
Implementing Secure Socket Layer on
Cisco IOS XR Software
The Secure Socket Layer (SSL) protocol and Transport Layer Security (TLS) are application-level
protocols that provide for secure communication between a client and server by allowing mutual
authentication, the use of hash for integrity, and encryption for privacy. SSL and TLS rely on certificates,
public keys, and private keys.
Certificates are similar to digital ID cards. They prove the identity of the server to clients. Certificates
are issued by certification authorities (CAs), such as VeriSign or Thawte. Each certificate includes the
name of the authority that issued it, the name of the entity to which the certificate was issued, the entity's
public key, and time stamps that indicate the certificate's expiration date.
Public and private keys are the ciphers used to encrypt and decrypt information. Although the public key
is shared quite freely, the private key is never given out. Each public-private key pair works together:
Data encrypted with the public key can be decrypted only with the private key.
This module describes the tasks that you need to implement SSL on your Cisco IOS XR network.
Note For a complete description of the Public Key Infrastructure (PKI) commands used in this chapter, see
the Public Key Infrastructure Commands on Cisco IOS XR Software module of the Cisco IOS XR System
Security Command Reference publication. For information on SSL commands, see the Secure Socket
Layer Protocol Commands on Cisco IOS XR Software module of the Cisco IOS XR System Security
Command Reference publication. To locate documentation of other commands that appear in this
chapter, use the command reference master index, or search online.
Feature History for Implementing Secure Socket Layer on Cisco IOS XR Software
Release Modification
Release 2.0 This feature was introduced on the Cisco CRS-1.
Release 3.0 No modification.
Release 3.2 Support was added for the Cisco XR 12000 Series Router.
Release 3.3.0 No modification.
Release 3.4.0 No modification.
Release 3.5.0 No modification.

Table of Contents

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Cisco IOS XR and is the answer not in the manual?

Cisco IOS XR Specifications

General IconGeneral
Operating SystemCisco IOS XR
ArchitectureMicrokernel
High AvailabilityYes
TypeNetwork operating system
Developed byCisco Systems
LicenseProprietary
Programming LanguageC, C++
KernelQNX
Supported PlatformsCisco ASR9000, NCS series
Security FeaturesRole-Based Access Control (RBAC), Secure Boot, Encryption
Management InterfaceCLI, SNMP, NETCONF, RESTCONF
Release Date2004
Target DevicesHigh-end core routers, service provider edge routers, data center interconnect (DCI) routers
Supported HardwareCisco routers and switches
Networking ProtocolsBGP, OSPF, IS-IS, MPLS
Virtualization SupportVirtualization-ready, supports network function virtualization (NFV) and containerization technologies.

Related product manuals