Ssltrace - IBM WebSphere XS40 Command Reference Manual

Datapower xml security gateway
Table of Contents

Advertisement

Use the no sslproxy command to delete an SSL Proxy Profile.
Related Commands
profile (Crypto)
Examples
v Creates the SSL-1 server SSL Proxy Profile using the Low Crypto Profile on the
v Creates the SSL-2 client SSL Proxy Profile using the High Crypto Profile on
v Creates the SSL-3 client SSL Proxy Profile using the ClientIDs Crypto Profile on
v Creates the SSL-4 two-way SSL Proxy Profile using the NoMD Crypto Profile on
v Creates the SSL-5 server SSL Proxy Profile using the Low Crypto Profile on the
v Creates the SSL-6 two-way SSL Proxy Profile using the NoMD Crypto Profile on
v Deletes the SSL-6 SSL Proxy Profile.

ssltrace

Enables an SSL trace of a specified SSL Proxy Profile.
Syntax
ssltrace name
Parameters
name
Guidelines
This command is available only during Telnet and SSH command sessions.
Press the ENTER key to stop the trace. If the SSL connection terminates before you
press ENTER, the firmware displays the following message and ends the SSL trace:
appliance-to-client connections. Default values are used for the other properties.
# sslproxy SSL-1 server Low
appliance-to-server connections. Default values are used for the other properties.
# sslproxy SSL-2 client High
the appliance-to-server connections. Client-side caching is disabled.
# sslproxy SSL-3 client ClientIDs client-cache off
the appliance-to-client connections and the High Crypto Profile on
appliance-to-server connections. Default values are used for the other properties.
# sslproxy SSL-4 two-way NoMD High
appliance-to-client connection. The session-specific state data times out after 15
minutes (900 seconds), and maximum cache size is allocated for 102,400 entries.
Default values are used for the other properties.
# sslproxy SSL-5 reverse Low sess-timeout 900 cache-size 100
the appliance-to-client connections and the High Crypto Profile on the
appliance-to-server connections. The session-specific state data times out after 15
minutes (900 seconds), the maximum cache size is allocated for 102,400 entries,
client-side caching is disabled, and SSL client authentication by the backend
server is optional.
# sslproxy SSL-6 both NoMD High sess-timeout 900 cache-size 100
client-cache off client-auth-optional on
# no sslproxy SSL-6
Specifies the name of the target SSL Proxy Profile.
Chapter 2. Global configuration mode
107

Advertisement

Table of Contents
loading

Table of Contents