Cisco Systems 6500 nat server client natpool-name, virtual policy ssl ssl-policy-name, vlan vlan

Models: 6500

1 160
Download 160 pages 24.26 Kb
Page 83
Image 83
nat {server client natpool-name}

Chapter 2 Commands for the Catalyst 6500 Series SSL Services Module

service client

Table 2-9lists the commands that are available in proxy-client configuration submode.

Table 2-9 Proxy-client Configuration Submode Command Descriptions

Syntax

Description

 

 

certificate rsa general-purpose trustpoint

Configures the certificate with RSA general-purpose keys and associates a

trustpoint-name

trustpoint to the certificate.

 

 

default {certificate inservice nat server

Sets a command to its default settings.

virtual}

 

 

 

description

Allows you to enter a description for the proxy service.

 

 

exit

Exits from proxy-client configuration submode.

 

 

help

Provides a description of the interactive help system.

 

 

inservice

Declares a proxy client as administratively up.

 

 

nat {server client natpool-name}

Specifies the usage of either server NAT or client NAT for the server-side

 

connection that is opened by the SSL Services Module.

 

 

policy health-probe tcp policy-name

Applies a TCP health probe policy to a proxy server.

 

 

policy http-header policy-name

Applies an HTTP header insertion policy to a proxy server.

 

 

policy urlrewrite policy-name

Applies a URL rewrite policy to the proxy server.

 

 

server ipaddr ip-addrprotocol protocol

Defines the IP address of the target server for the proxy server. You can also

port portno [sslv2]

specify the port number and the transport protocol. The target IP address can

 

be a virtual IP address of an SLB device or a real IP address of a web server.

 

The sslv2 keyword enables SSL version 2.

 

 

server policy tcp

Applies a TCP policy to the server side of a proxy server. You can specify the

server-side-tcp-policy-name

port number and the transport protocol.

 

 

virtual ipaddr ip-addrprotocol protocol

Defines the IP address of the target server for the proxy server. You can also

port portno [secondary]

specify the port number and the transport protocol. The target IP address can

 

be a virtual IP address of an SLB device or a real IP address of a web server.

 

 

virtual policy ssl ssl-policy-name

Applies an SSL policy with the client side of a proxy server.

 

 

virtual policy tcp

Applies a TCP policy to the client side of a proxy server.

client-side-tcp-policy-name

 

 

 

vlan vlan

Virtual Service VLAN configuration.

 

 

Both secured mode and bridge mode between the Content Switching Module (CSM) and the SSL Services Module are supported.

Use the secondary keyword (optional) for the bridge-mode topology.

Catalyst 6500 Series Switch SSL Services Module Command Reference

 

OL-9105-01

2-57

 

 

 

Page 83
Image 83
Cisco Systems 6500 nat server client natpool-name, virtual policy ssl ssl-policy-name, virtual policy tcp, vlan vlan, 2-57