Configuration Procedure; Displaying And Maintaining Ssl; Troubleshooting Ssl; Ssl Handshake Failure - H3C S3610 Series Operation Manual

Ssl-https
Hide thumbs Also See for S3610 Series:
Table of Contents

Advertisement

Operation Manual – SSL-HTTPS
H3C S3610&S5510 Series Ethernet Switches

1.4.2 Configuration Procedure

Follow these steps to configure an SSL client policy:
Enter system view
Create an SSL client
policy and enter its view
Specify a PKI domain for
the SSL client policy
Specify the preferred
cipher suite for the SSL
client policy
Specify the SSL protocol
version for the SSL client
policy
Note:
If you enable client authentication on the server, you must request a local certificate for
the client.

1.5 Displaying and Maintaining SSL

Display SSL server policy
information
Display SSL client policy
information

1.6 Troubleshooting SSL

1.6.1 SSL Handshake Failure

I. Symptom
As the SSL server, the device fails to handshake with the SSL client.
To do...
system-view
ssl client-policy
policy-name
pki-domain
domain-name
prefer-cipher
{ rsa_aes_128_cbc_sha
| rsa_des_cbc_sha |
rsa_rc4_128_md5 |
rsa_rc4_128_sha }
version { ssl3.0 | tls1.0 }
To do...
display ssl server-policy
{ policy-name | all }
display ssl client-policy
{ policy-name | all }
Use the command...
Use the command...
1-6
Chapter 1 SSL Configuration
Remarks
Required
Required
No PKI domain is
configured by default.
Optional
rsa_rc4_128_md5 by
default
Optional
TLS 1.0 by default
Remarks
Available in any
view

Advertisement

Table of Contents
loading

This manual is also suitable for:

S5510 seriesS5500-si series

Table of Contents