Cisco ASA Series Cli Configuration Manual page 1283

Software version 9.0 for the services module
Hide thumbs Also See for ASA Series:
Table of Contents

Advertisement

Chapter 1
Configuring Cisco Mobility Advantage
Figure 1-6
DMZ
object network obj-172.16.27.41-01
host 172.16.27.41
nat (inside,outside) static 192.0.2.140
object network obj-0.0.0.0-01
subnet 0.0.0.0 0.0.0.0
nat (outside,inside) dynamic 192.0.2.183
crypto ca import cuma_proxy pkcs12 sample_passphrase
<cut-paste base 64 encoded pkcs12 here>
quit
! for CUMA server's self-signed certificate
crypto ca trustpoint cuma_server
enrollment terminal
crypto ca authenticate cuma_server
Enter the base 64 encoded CA certificate.
End with a blank line or the word "quit" on a line by itself
MIIDRTCCAu+gAwIBAgIQKVcqP/KW74VP0NZzL+JbRTANBgkqhkiG9w0BAQUFADCB
[ certificate data omitted ]
/7QEM8izy0EOTSErKu7Nd76jwf5e4qttkQ==
quit
tls-proxy cuma_proxy
Cisco UMC/Cisco UMA Architecture – Scenario 2: Security Appliance as TLS Proxy Only
Client connects to
cuma.example.com
(192.0.2.41)
Cisco UMC Client
192.0.2.41/24
192.0.2.182/24
outside
inside
ASA with
TLS Proxy
Configuration Examples for Cisco Mobility Advantage
Internet
ISP
Gateway
Internal Network
IP Address:
172.16.27.41
(DMZ routable)
Active
Directory
Exchange
Cisco Unified
Presence
Enterprise Network
Cisco ASA Series CLI Configuration Guide
Corporate
Firewall
eth0
Cisco UMA
M
Cisco UCM
MP
Conference
Voice mail
1-13

Advertisement

Table of Contents
loading

Table of Contents