3-13
Device Manager Guide, Cisco ACE 4700 Series Application Control Engine Appliance
OL-26645-02
Chapter 3 Using DM Guided Setup
Using Application Setup
The SSL Proxy window appears (Config > Guided Setup > Application Setup > SSL Proxy).
Note To terminate or initiate HTTPS connections with ACE, the virtual context must have at least one
SSL proxy service. An SSL proxy contains the certificate and key information needed to
terminate HTTPS connections from the client or initiate them to the servers.
Perform the following actions to create or modify an SSL proxy service:
a. To create an SSL proxy service, click SSL Proxy Setup.
Note To edit an existing SSL proxy service, choose it from the SSL Proxy table, and click Edit to
modify the SSL proxy service. The SSL Proxy Service configuration window appears. Edit
the required fields as described in the “Configuring SSL Proxy Service” section on
page 9-28.
b. Add required fields as described in the “Configuring SSL Proxy Service” section on page 9-28.
c. Click Deploy Now to deploy this configuration on the ACE and save your entries to the
running-configuration and startup-configuration files.
Step 11 Click Virtual Server under Application Setup.
The Virtual Servers window appears (Config > Guided Setup > Application Setup > Virtual Server).
The virtual server defines the load-balancing configuration for an application.
Perform the following actions to create or modify a virtual server:
a. Click Add to add a new virtual server, or choose an existing virtual server, and click Edit to modify
it. The Virtual Server configuration window appears with a number of configuration subsets. The
subsets that you see depend on whether you use the Basic View or the Advanced View and entries
you make in the Properties subset. Change views by using the View object selector at the top of the
configuration pane.
b. Add or edit required fields as described in the “Virtual Server Configuration Procedure” section on
page 5-7. Table 5-1 identifies and describes virtual server configuration subsets with links to related
topics for configuration information.
Virtual servers have many configuration options. At a minimum, you need to configure the
following attributes:
–
Set the VIP, port number (TCP or UDP), and application protocol for your application.
Note If the ACE is to terminate the client HTTPS connections, choose HTTPS as the Application
Protocol.
–
(One-Armed Topology) For VLAN, choose the VLAN from Step 6.
–
(Routed Topology) For VLAN, choose the client-side VLAN from Step 6.
–
(Bridged Topology) For VLAN, choose the client-side VLAN from Step 6.
–
If the ACE is to terminate client HTTPS connections, then under the SSL Termination header,
specify the SSL proxy defined in Step 10.
–
Under the Default L7 Loadbalancing Action, set Primary Action to Loadbalance.
Comments to this Manuals