Cisco Systems 6500 ssl-proxy pki, certificate check-expiring interval hours history, authenticate

Models: 6500

1 160
Download 160 pages 24.26 Kb
Page 117
Image 117
ssl-proxy pki

Chapter 2 Commands for the Catalyst 6500 Series SSL Services Module

ssl-proxy pki

ssl-proxy pki

To configure and define the PKI implementation on the SSL Services Module, use the ssl-proxy pki command. Use the no form of this command to disable the logging and clear the memory.

ssl-proxy pki {{authenticate {timeout seconds}} {cache {{size entries} {timeout minutes}}}

{certificate {check-expiring {interval hours}}} history}

 

 

no ssl-proxy pki {authenticate cache certificate history}

 

 

 

 

Syntax Description

 

authenticate

Configures the certificate authentication and authorization.

 

 

 

 

 

 

timeout seconds

Specifies the timeout in seconds for each request; valid values are from 1 to

 

 

 

600 seconds.

 

 

 

 

 

 

cache

Configures the peer-certificate cache.

 

 

 

 

 

 

size entries

Specifies the maximum number of cache entries; valid values are from 0 to

 

 

 

5000 entries.

 

 

 

 

 

 

timeout minutes

Specifies the aging timeout value of entries; valid values are from 1 to 600

 

 

 

minutes.

 

 

 

 

 

 

certificate

Configures the check-expiring interval.

 

 

 

 

 

 

check-expiring

Specifies the check-expiring interval; valid values are from 0 to 720 hours.

 

 

interval hours

 

 

 

 

 

 

 

 

history

Key and certificate history.

 

 

 

 

 

 

 

 

Defaults

 

The default settings are as follows:

 

 

timeout seconds180 seconds

 

 

size entries0entries

 

 

 

timeout minutes15 minutes

 

 

interval hours0hours, do not check

 

 

 

 

 

Command Modes

 

Global configuration

 

 

 

 

 

 

Command History

 

Release

Modification

 

 

 

 

 

 

Cisco IOS Release

Support for this command was introduced on the Catalyst 6500 series

 

 

12.1(13)E and

switches.

 

 

SSL Services Module

 

 

 

Release 1.1(1)

 

 

 

 

 

 

 

SSL Services Module This command was changed to add the following keywords:

 

 

Release 2.1(1)

authenticate

 

 

 

 

 

 

cache

 

 

 

certificate

 

 

 

 

 

Catalyst 6500 Series Switch SSL Services Module Command Reference

 

OL-9105-01

2-91

 

 

 

Page 117
Image 117
Cisco Systems 6500 ssl-proxy pki, certificate check-expiring interval hours history, authenticate, timeout seconds, cache