Chapter 3 Commands Specific to the Content Switching Module with SSL

ssl-proxy pki

Usage Guidelines Thessl-proxy pki history command enables logging of certificate history records per-proxy service into memory and generates a syslog message per record. Each record tracks the addition or deletion of a key pair or certificate into the proxy services key and the certificate table.

When the index of the table changes, this command logs the following information:

Key pair name

Trustpoint label

Service name

Subject name

Serial number of the certificate

Up to 512 records can be stored in the memory at one time.

Examples

This example shows how to specify the timeout in seconds for each request:

ssl-proxy (config)# ssl-proxy pki authenticate timeout 200

ssl-proxy (config)#

This example shows how to specify the cache size:

ssl-proxy (config)# ssl-proxy pki cache size 50

ssl-proxy (config)#

This example shows how to specify the aging timeout value of entries:

ssl-proxy (config)# ssl-proxy pki cache timeout 20

ssl-proxy (config)#

This example shows how to specify the check-expiring interval:

ssl-proxy (config)# ssl-proxy pki certificate check-expiring interval 100

ssl-proxy (config)#

This example shows how to enable PKI event-history:

ssl-proxy (config)# ssl-proxy pki history

ssl-proxy (config)#

Related Commands show ssl-proxy stats

Catalyst 6500 Series Switch Content Switching Module with SSL Command Reference

 

OL-7029-01

3-53

 

 

 

Page 275
Image 275
Cisco Systems OL-7029-01 manual This example shows how to specify the cache size, Related Commands show ssl-proxy stats