Cisco Explorer 4700 Installation Guide Page 189

  • Download
  • Add to my manuals
  • Print
  • Page
    / 648
  • Table of contents
  • TROUBLESHOOTING
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews
Page view 188
5-53
Device Manager Guide, Cisco ACE 4700 Series Application Control Engine Appliance
OL-26645-02
Chapter 5 Configuring Virtual Servers
Configuring Virtual Servers
N/A—HTTP compression is disabled.
When configuring HTTP compression, we recommend that you exclude the following MIME types from
HTTP compression: “.*gif”, “.*css”, “.*js”, “.*class”, “.*jar”, “.*cab”, “.*txt”, “.*ps”, “.*vbs”, “.*xsl”,
“.*xml”, “.*pdf”, “.*swf”, “.*jpg”, “.*jpeg”, “.*jpe”, or “.*png”.
When you enable HTTP compression, the ACE compresses the packets using the following default
compression parameter values:
Mime type—All text formats (text/*).
Minimum size—512 bytes.
User agent—None.
Step 10 In the SSL Initiation field, select an existing service, or select *New* to create a new service.
Note The SSL Initiation field appears only in the Advanced View, and when TCP is the selected
protocol and Other, HTTP, or HTTPS is the application protocol.
Note The SSL initiation option does not apply to the ACE NPE software version (see the “Information
About the ACE No Payload Encryption Software Version” section on page 1-2).
SSL initiation allows the virtual server to act as an SSL proxy client to initiate and maintain an SSL
connection between itself and an SSL server. In this particular application, the ACE receives clear text
from an HTTP client, and encrypts and transmits the data as ciphertext to the SSL server. On the reverse
side, the ACE decrypts the ciphertext that it receives from the SSL server and sends the data to the client
as clear text.
If you select an existing SSL service, you can view, modify, or duplicate the existing configuration.
See the “Shared Objects and Virtual Servers” section on page 5-9 for more information about
modifying shared objects.
If you select *New*, configure the service using the information in Table 5-14.
Table 5-14 Virtual Server SSL Initiation Attributes
Field Description
Name Enter a name for this SSL proxy service. Valid entries are alphanumeric
strings with a maximum of 26 characters.
Keys Select the SSL key pair to use during the SSL handshake for data encryption.
Certificates Select the SSL certificate to use during the SSL handshake.
Chain Groups Select the chain group to use during the SSL handshake.
Auth Groups Select the SSL authentication group to associate with this proxy server
service.
CRL Best-Effort This option appears if you select an authentication group in the Auth Group
Name field.
Check the check box to allow the ACE to search client certificates for the
service to determine if it contains a CRL in the extension and retrieve the
value, if it exists.
Clear the check box to disable this feature.
Page view 188
1 ... 188 189 190 ... 648

Comments to this Manuals

No comments