Copying A Configuration To Other Workstations - HP NonStop SSL Reference Manual

Table of Contents

Advertisement

Field
Tab
Turn On
Advanced
Debugging
Message Output
Allow
Advanced
connection from
localhost only
Turn off SSL
Advanced
session
resumption
Initialize secure
Advanced
random seeding
on startup
Use Microsoft
Advanced
Certificate Store
Additional Run
Advanced
Options

Copying a Configuration to Other Workstations

The RemoteProxy configuration is stored in the registry. Identical configuration of multiple targets PC's can be achieved
as follows:
1. Manually configure a single target PC.
2. Export the registry part which contains that configuration
(HKEY_CURRENT_USER\Software\Hewlett-Packard\HP NonStop SSL RemoteProxy)
3. Copy the resulting ".reg" file to the target workstation.
4. On the new target PC, import the ".reg" file into the registry by double clicking it.
HP NonStop SSL Reference Manual
Meaning
certificates only have to be configured when client
authentication is to be performed.
According to this the pass phrase of the private key file
(as opposed to its public RSA key) must be configured
in the "Pass-Phrase" field in the following cases:
a) Session is configured as LPDS server (SSL server
proxy for LPD)
b) Session is configured for running as a client and SSL
Client Authentication is to be used.
Should only be checked when you are tracking a
problem after contacting HP or comForte Support.
If you check this option, the SSL proxy will only
accept connections from your local computer.
Checking this option if the local computer is the client
will prevent misuse of the proxy by external attackers.
If the local computer is the server, then you need to
disable this option to allow connections from your
NonStop server acting as a client.
SSL session resumption will speed up the setup of
multiple sessions to the same server by reusing session
secrets from previous sessions. Turn SSL session
resumption off only for testing purposes.
If you check this option, the SSL proxy will generate
random data at session startup time. Otherwise, it will
generate the random data when required during the first
connection request. The random data generation
process will take a few seconds and will heavily utilize
the CPU. This option allows to control when this
process is performed.
For SSL client authentication the SSL proxy can
optionally access the Microsoft Certificate Store to read
the certificates and private keys.
This field allows you to specify additional startup
parameters for the proxy. You should only enter values
when advised so by HP or comForte Support.
Default Value
not checked
checked
not checked
not checked
not checked
none
Remote SSL Proxy • 115

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents