SSL Commands
Extreme Networks EAS 100-24t Switch CLI Manual
299
Example usage:
To enable SSL on the switch for all ciphersuites:
Enabling SSL on the switch will enable all ciphersuites. To utilize a particular ciphersuite, the user must
eliminate other ciphersuites by using the disable ssl command along with the appropriate ciphersuites.
Enabling the SSL function on the switch will disable the port for the web manager (port 80). To log on to
the web based manager, the entry of the URL must begin with https://. (ex. https://10.1.1.1).
Description This command is used to enable SSL on the switch by implementing any one
or combination of listed ciphersuites on the switch. Entering this command
without a parameter will enable the SSL status on the switch. Enabling SSL
will disable the web-manager on the switch.
Parameters ciphersuite - A security string that determines the exact cryptographic
parameters, specific encryption algorithms and key sizes to be used for an
authentication session. The user may choose any combination of the
following:
RSA_with_RC4_128_MD5 – This ciphersuite combines the RSA key
exchange, stream cipher RC4 encryption with 128-bit keys and the MD5 Hash
Algorithm.
RSA_with_3DES_EDE_CBC_SHA - This ciphersuite combines the RSA key
exchange, CBC Block Cipher 3DES_EDE encryption and the SHA Hash
Algorithm.
DHE_DSS_with_3DES_EDE_CBC_SHA - This ciphersuite combines the DSA
Diffie Hellman key exchange, CBC Block Cipher 3DES_EDE encryption and
SHA Hash Algorithm.
RSA_EXPORT_with_RC4_40_MD5 - This ciphersuite combines the RSA
Export key exchange, stream cipher RC4 encryption with 40-bit keys.
The ciphersuites are enabled by default on the switch, yet the SSL status is
disabled by default. Enabling SSL with a ciphersuite will not enable the SSL
status on the switch.
Restrictions Only Administrator-level users can issue this command.
#enable ssl
Command: enable ssl
Note: Web will be disabled if SSL is
enabled.
Success.
#
enable ssl