Cisco Systems OL-7029-01 Switch User Manual


 
3-52
Catalyst 6500 Series Switch Content Switching Module with SSL Command Reference
OL-7029-01
Chapter 3 Commands Specific to the Content Switching Module with SSL
ssl-proxy pki
ssl-proxy pki
To configure and define the PKI implementation on the Content Switching Module with SSL, use the
ssl-proxy pki command. Use the no form of this command to disable the logging and clear the memory.
ssl-proxy pki {{authenticate {timeout seconds}} | {cache {{size entries} | {timeout minutes}}}
| {certificate {check-expiring {interval hours}}} | history}
no ssl-proxy pki {authenticate | cache | certificate | history}
Syntax Description
Defaults The default settings are as follows:
timeout seconds180 seconds
size entries0 entries
timeout minutes15 minutes
interval hours0 hours, do not check
Command Modes Global configuration
Command History
authenticate Configures the certificate authentication and authorization.
timeout seconds Specifies the timeout in seconds for each request; valid values are from 1 to
600 seconds.
cache Configures the peer-certificate cache.
size entries Specifies the maximum number of cache entries; valid values are from 0 to
5000 entries.
timeout minutes Specifies the aging timeout value of entries; valid values are from 1 to 600
minutes.
certificate Configures the check-expiring interval.
check-expiring
interval hours
Specifies the check-expiring interval; valid values are from 0 to 720 hours.
history Key and certificate history.
Release Modification
Cisco IOS Release
12.1(13)E and
SSL Services Module
Release 1.1(1)
Support for this command was introduced on the Catalyst 6500 series
switches.
SSL Services Module
Release 2.1(1)
This command was changed to add the following keywords:
authenticate
cache
certificate
CSM-S release 1.1(1) This command was introduced.