Ssl Configuration Task List - Planet XGS3-42000R User Manual

4-slot layer 3 ipv6/ ipv4 routing chassis switch
Table of Contents

Advertisement

data transmission in the application layer will be encrypted.
SSL handshake is done when the SSL session is being set up. The switch should be able to provide
certification keys. Currently the keys provided by the switch are not the formal certification k eys issued by
official authentic, but the private certification keys generated by SSL software under Linux which may not be
recognized by the web brows er. With regard to the switch application, it is not necessary to apply for a formal
SSL certification key. A private certification key is enough to make the communication safe between the users
and the switch. Currently it is not required that the client is able to check the validation of the certification key.
The encryption key and the encryption method should be negotiated during the handshake period of the
session which will be then used for data enc ryption.
SSL session handshake process:

53.2 SSL Configuration Task List

1.
Enable/disable SSL function
2.
Configure/delete port number by SSL used
3.
Configure/delete secure cipher suite by SSL used
4.
Maintenance and diagnose for the SSL function
1. Enable/disable SSL function
Global Mode
ip http secure-server
no ip http secure-server
Command
Explanation
Enable/disable SSL function.
53-2

Advertisement

Table of Contents

Troubleshooting

loading

Table of Contents