Configuring An Ssl Client Policy - HP VSR1000 Security Configuration Manual

Virtual services router
Table of Contents

Advertisement

Step
6.
Enable the SSL server to
authenticate SSL clients.

Configuring an SSL client policy

An SSL client policy comprises a set of SSL parameters that the client uses to establish a connection to the
server. An SSL client policy takes effect only after it is associated with an application such as the DDNS.
For more information about DDNS, see Layer 3—IP Services Configuration Guide.
To configure an SSL client policy:
Step
1.
Enter system view.
2.
Create an SSL client policy and
enter its view.
3.
(Optional.) Specify a PKI
domain for the SSL client policy.
Command
client-verify enable
Command
system-view
ssl client-policy policy-name
pki-domain domain-name
285
Remarks
By default, the SSL server does
not authenticate SSL clients.
When authenticating a client by
using the digital certificate, the
SSL server performs the
following operations:
Verifies the CA certificate
chain presented by the
client.
Checks that the certificates
in the certificate chain
(except the root CA
certificate) are not revoked.
Remarks
N/A
By default, no SSL client policy
exists on the device.
By default, no PKI domain is
specified for an SSL client policy.
If the SSL server authenticates the
SSL client through a digital
certificate, you must use this
command to specify a PKI
domain and request a local
certificate for the SSL client
through the PKI domain.
For information about how to
create and configure a PKI
domain, see
"Configuring
PKI."

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents