D-Link DGS-1510 Series Reference Manual page 546

Gigabit ethernet smartpro switch
Hide thumbs Also See for DGS-1510 Series:
Table of Contents

Advertisement

DGS-1510 Series Gigabit Ethernet SmartPro Switch CLI Reference Guide
secure-trustpoint
TRUSTPOINT
session-cache-timeout TIME-
OUT
Default
None.
Command Mode
Global Configuration Mode.
Command Default Level
Level: 15.
Usage Guideline
This command is used to configure the SSL service policy.
Example
This example shows how to configure the SSL service policy "ssl-server" which associates the "TP1"
trust-point.
Switch# configure terminal
Switch(config)# ssl-service-policy ssl-server secure-trustpoint TP1
Switch(config)#
dhe-dss-3des-ede-cbc-sha - Use DH key exchange with 3DES-
EDE-CBC encryption and SHA for message digest.
rsa-3des-ede-cbc-sha - Use RSA key exchange with 3DES and
DES-EDE3-CBC for message encryption and the Secure Hash
Algorithm (SHA) for message digest.
rsa-rc4-128-sha - Use RSA key exchange with RC4 128-bit
encryption for message encryption and SHA for message digest.
rsa-rc4-128-md5 - Use RSA key exchange with RC4 128-bit
encryption for message encryption and Message Digest 5 (MD5) for
message digest.
rsa-export-rc4-40-md5 - Use RSA EXPORT key exchange with
RC4 40 bits for message encryption and MD5 for message digest.
When the cipher suite is not configured, the SSL client and server
will negotiate the best cipher suite that they both support from the
list of available cipher suites. Multiple cipher suites can be specified
to be used. Use the no form of this command to disable the
selected cipher suites.
(Optional) Specifies the name of the trust-point that should be used
in SSL handshake. When this parameter is not specified, the trust-
point which is specified as the primary will be used. If no primary
trust-point is specified, the built-in certificate/key pairs will be used.
In no form of this command, the specified trust-point will be
canceled and then the built-in certificate/key pairs will be used.
(Optional) Specifies the timeout value in seconds for the information
stored in the SSL session cache. The valid range is from 60 to
86400. When this parameter is not configured, the default session
cache timeout is 600 seconds. In the no form of this command, the
SSL session cache timeout will be reverted to the default value.
543

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents