Cisco Explorer 4700 Installationsanleitung Seite 329

  • Herunterladen
  • Zu meinen Handbüchern hinzufügen
  • Drucken
  • Seite
    / 648
  • Inhaltsverzeichnis
  • FEHLERBEHEBUNG
  • LESEZEICHEN
  • Bewertet. / 5. Basierend auf Kundenbewertungen
Seitenansicht 328
9-3
Device Manager Guide, Cisco ACE 4700 Series Application Control Engine Appliance
OL-26645-02
Chapter 9 Configuring SSL
SSL Configuration Prerequisites
SSL Configuration Prerequisites
Before configuring your ACE for SSL operation, you must first ensure:
Your ACE hardware is configured for server load balancing (SLB).
Note During the real server and server farm configuration process, when you associate a real server
with a server farm, ensure that you assign an appropriate port number for the real server. The
default behavior by the ACE is to automatically assign the same destination port that was used
by the inbound connection to the outbound server connection if you do not specify a port.
Your policy map is configured to define the SSL session parameters and client/server authentication
tools, such as the certificate and RSA key pair.
Your class map is associated with the policy map to define the virtual SSL server IP address that the
destination IP address of the inbound traffic must match.
You must import a digital certificate and its corresponding public and private key pair to the desired
ACE context.
At least one SSL certificate is available.
If you do not have a certificate and corresponding key pair, you can generate an RSA key pair and
a certificate signing request (CSR). Create a CSR when you need to apply for a certificate from a
certificate authority (CA). The CA signs the CSR and returns the authorized digital certificate to
you.
RBAC User Role Requirements for SSL Configurations
For all SSL-related configurations on the ACE, a user with a custom role should include the following
two rules as part of the assigned role:
A rule that includes the SSL feature.
A rule that includes the PKI feature.
For details on user roles and rules, see the “Creating User Roles” section in Chapter 15, “Managing the
ACE Appliance.”
Seitenansicht 328
1 2 ... 324 325 326 327 328 329 330 331 332 333 334 ... 647 648

Kommentare zu diesen Handbüchern

Keine Kommentare