Chapter 11
To set SSL termination configuration variables for Traffic Server/origin server connections:
1. Telnet into the HP web cache appliance and select Shell Access as described in
Methods‚ on page
2. Open the
records.config
3. Edit the following variables in the
Variable
proxy.config.ssl.auth.enabled
proxy.config.ssl.server_port
proxy.config.ssl.client.verify.server
proxy.config.ssl.client.cert.filename
proxy.config.ssl.client.cert.path
proxy.config.ssl.client.private_key.filename
proxy.config.ssl.client.private_key.path
proxy.config.ssl.client.CA.cert.filename
proxy.config.ssl.client.CA.cert.path
4. Save and close the
5. Restart Traffic Server using the command
restart_traffic_server
7.
file located in Traffic Server's
SSL Termination
file.
records.config
directory with Vi.
config
section of the file:
Description
Set this variable to 1 to enable the SSL termination
option.
Set this variable to specify the port used for SSL
communication. The default port is 443.
Set this option to 1 to require Traffic Server to verify the
origin server certificate with the CA.
If you have installed an SSL client certificate on Traffic
Server, set this variable to specify the file name of client
certificate.
If you have installed an SSL client certificate on Traffic
Server, set this variable to specify the location of the
client certificate. The default directory is Traffic
Server's config directory.
Set this variable to specify the file name of Traffic
Server's private key.
Change this variable only if the private key is not
located in the Traffic Server's SSL client certificate file.
Set this variable to specify the location of the Traffic
Server's private key.
Change this variable only if the private key is not
located in the SSL client certificate file.
Specify the file name of the certificate authority against
which the origin server will be verified.The default
value is NULL.
Specify the location of the certificate authority file
against which the origin server will be verified.The
default value is NULL.
Security Options
Overview of Access
97
Need help?
Do you have a question about the P4535A - Web Cache Server Appliance and is the answer not in the manual?
Questions and answers