<Sysname> system-view
[Sysname] ssl server-policy policy1
[Sysname-ssl-server-policy-policy1] handshake timeout 3000
pki-domain
Syntax
pki-domain domain-name
undo pki-domain
View
SSL server policy view, SSL client policy view
Default level
2: System level
Parameters
domain-name: Name of a PKI domain, a case-insensitive string of 1 to 15 characters.
Description
Use pki-domain to specify a PKI domain for an SSL server policy or SSL client policy.
Use undo pki-domain to restore the default.
By default, no PKI domain is configured for an SSL server policy or SSL client policy.
If you do not specify a PKI domain for an SSL server policy, the SSL server generates a certificate for itself
rather than obtaining one from a CA server.
Related commands: display ssl server-policy and display ssl client-policy.
Examples
# Configure SSL server policy policy1 to use PKI domain server-domain.
<Sysname> system-view
[Sysname] ssl server-policy policy1
[Sysname-ssl-server-policy-policy1] pki-domain server-domain
# Configure SSL client policy policy1 to use PKI domain client-domain.
<Sysname> system-view
[Sysname] ssl client-policy policy1
[Sysname-ssl-client-policy-policy1] pki-domain client-domain
prefer-cipher
Syntax
prefer-cipher
rsa_des_cbc_sha | rsa_rc4_128_md5 | rsa_rc4_128_sha }
undo prefer-cipher
View
SSL client policy view
{
rsa_3des_ede_cbc_sha
|
rsa_aes_128_cbc_sha
239
|
rsa_aes_256_cbc_sha
|