Cisco Systems OL-7029-01 Switch User Manual


 
3-70
Catalyst 6500 Series Switch Content Switching Module with SSL Command Reference
OL-7029-01
Chapter 3 Commands Specific to the Content Switching Module with SSL
ssl-proxy service client
ssl-proxy service client
To enter the client proxy-service configuration submode, use the ssl-proxy service client command.
ssl-proxy service ssl-proxy-name client
Syntax Description
Defaults Client NAT is disabled.
Command Modes Global configuration
Command History
Usage Guidelines In client proxy-service configuration submode, you specify that the proxy service accept clear-text traffic,
encrypt it into SSL traffic, and forward it to the back-end SSL server.
In most cases, all of the SSL-server-proxy configurations that are performed are also valid for the
SSL-client-proxy configuration, except for the following:
You must configure a certificate for the SSL-server-proxy but you do not have to configure a
certificate for the SSL-client-proxy. If you configure a certificate for the SSL-client-proxy, that
certificate is sent in response to the certificate request message that is sent by the server during the
client-authentication phase of handshake protocol.
The SSL policy is attached to the virtual subcommand for ssl-server-proxy where as it is attached to
server SSL-client-proxy subcommand.
Each proxy-service or proxy-client configuration submode command is entered on its own line.
Table 3-9 lists the commands that are available in proxy-client configuration submode.
ssl-proxy-name SSL proxy service name.
Release Modification
SSL Services Module
Release 2.1(1)
Support for this command was introduced on the Catalyst 6500 series
switches.
CSM-S release 1.1(1) This command was introduced.
Table 3-9 Proxy-client Configuration Submode Command Descriptions
Syntax Description
certificate rsa general-purpose trustpoint
trustpoint-name
Configures the certificate with RSA general-purpose keys and associates a
trustpoint to the certificate.
default {certificate | inservice | nat | server
| virtual}
Sets a command to its default settings.
exit Exits from proxy-client configuration submode.
help Provides a description of the interactive help system.
inservice Declares a proxy client as administratively up.