Chapter 2 Commands for the Catalyst 6500 Series SSL Services Module

service client

Examples

This example shows how to enter the client proxy-service configuration submode:

ssl-proxy (config)# ssl-proxy context s1 ssl-proxy(config-context)#service S7 client ssl-proxy(config-ctx-ssl-proxy)#

This example shows how to configure the certificate for the specified SSL-proxy services:

ssl-proxy(config-ctx-ssl-proxy)#certificate rsa general-purpose trustpoint tp1

ssl-proxy (config-ctx-ssl-proxy)#

These examples show how to set a specified command to its default value:

ssl-proxy (config-ctx-ssl-proxy)# default certificate ssl-proxy (config-ctx-ssl-proxy)# default inservice ssl-proxy (config-ctx-ssl-proxy)# default nat ssl-proxy (config-ctx-ssl-proxy)# default server ssl-proxy (config-ctx-ssl-proxy)# default virtual ssl-proxy (config-ctx-ssl-proxy)#

This example shows how to configure a virtual IP address for the specified virtual server:

ssl-proxy(config-ctx-ssl-proxy)#virtual ipaddr 207.59.100.20 protocol tcp port 443

ssl-proxy (config-ctx-ssl-proxy)#

This example shows how to configure the SSL policy for the specified virtual server:

ssl-proxy (config-ctx-ssl-proxy)# virtual policy ssl sslpl1

ssl-proxy (config-ctx-ssl-proxy)#

This example shows how to configure the TCP policy for the specified virtual server:

ssl-proxy (config-ctx-ssl-proxy)# virtual policy tcp tcppl1 ssl-proxy (config-ctx-ssl-proxy)#

This example shows how to configure a clear-text web server for the SSL Services Module to forward the decrypted traffic:

ssl-proxy(config-ctx-ssl-proxy)#server ipaddr 207.50.0.50 protocol tcp port 80

ssl-proxy (config-ctx-ssl-proxy)#

This example shows how to configure a TCP policy for the given clear-text web server:

ssl-proxy (config-ctx-ssl-proxy)# server policy tcp tcppl1

ssl-proxy (config-ctx-ssl-proxy)#

This example shows how to configure a NAT pool for the client address that is used in the server connection of the specified service SSL offload:

ssl-proxy (config-ctx-ssl-proxy)# nat client NP1 ssl-proxy (config-ctx-ssl-proxy)#

This example shows how to enable a NAT server address for the server connection of the specified service SSL offload:

ssl-proxy (config-ctx-ssl-proxy)# nat server ssl-proxy (config-ctx-ssl-proxy)#

Related Commands show ssl-proxy service

Catalyst 6500 Series Switch SSL Services Module Command Reference

2-58

OL-9105-01

 

 

Page 84
Image 84
Cisco Systems 6500 manual Ssl-proxy config-ctx-ssl-proxy# server policy tcp tcppl1