Nortel 3050 Command Reference Manual page 88

Vpn gateway
Hide thumbs Also See for 3050:
Table of Contents

Advertisement

88 Command Reference
Table 21
SSL Configuration Menu Options (/cfg/ssl) (cont'd.)
Command Syntax and Usage
Copyright © 2007 Nortel Networks
.
current setup and services. For detailed examples of virtual SSL server
implementations in conjunction with an Nortel Application Switch, see
the Application Guide for SSL Acceleration.
The VPN Gateway can also operate in standalone mode, i.e. without
being connected to an Nortel Application Switch. For configuration
examples, see the "Standalone Web Server Accelerator" chapter in the
Application Guide for SSL Acceleration.
You will be prompted the following information:
Type of server. Lets you specify the type of server, i.e. generic or
http. For example, to create a server for HTTPS offload purposes,
select http. When the SSL server type is set to HTTP, the virtual
SSL server is automatically configured to use built-in features such
as automatic SSL redirect and the adding of extra headers. For
more information about these advanced HTTP-specific features, see
the /cfg/ssl/server #/http command.
IP address of SSL server. Lets you specify the IP address of an
existing virtual server on the Nortel Application Switch to bind the
HTTP virtual SSL server to that virtual server.
Which port number the server should listen to. The default value is
443 (https) which is used for HTTPS offload purposes. To set up the
virtual SSL server to handle IMAPS for example, set the listen TCP
port to 993.
Real server IP. Sets the IP address of the real server to which the
virtual SSL server should connect when initiating requests. When
using the VPN Gateway with an Nortel Application Switch, the real
server IP address (RIP) should be the set to 0.0.0.0 (the default
setting).
Real server port. Defines the TCP port to which the virtual SSL
server connects. When setting up a virtual SSL server for HTTPS
offload purposes, the default real server port is 81. The virtual
SSL server will use this port to send and receive decrypted HTTP
information to and from the real web servers. The real Web servers
must also be configured to listen for NVG traffic on port 81. For
security reasons, it is also important to define a filter on the Nortel
Application Switch that blocks all incoming client traffic destined for
port 81.
Should the site be password-protected (yes/no). If you choose yes
here, a login window will be displayed when the user connects to
the HTTP server. The login feature is on top of the SSL encryption,
which makes it safe to enter user name and password. For user
Nortel VPN Gateway
Command Reference
NN46120-103 01.01 Standard
10 September 2007

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

3070Nvg 3050Nvg 3070Svm 10001000 con?guration guide

Table of Contents