12-97
Device Manager Guide, Cisco ACE 4700 Series Application Control Engine Appliance
OL-26645-02
Chapter 12 Configuring Traffic Policies
Configuring Actions Lists
The SSL Header Insert configuration window appears. Enter the required information as shown in
Table 12-37.
Table 12-37 SSL Header Insert Configuration Window Fields
Header Action Field Description / Action
Request Select the type of SSL header information to insert into the HTTP request:
• Client-Certificate—Information about the client certificate that the ACE retrieves from the client.
• Server-Certificate—Information about the server certificate that resides on the ACE.
• Session—Information about the session parameters that the ACE and client negotiated during the
SSL handshake.
Algorithm This field appears only when the Request field is set to either Client-Certificate or Server-Certificate.
Select the following certificate field information to insert into the HTTP request:
• Authority-Key-Id—X.509 authority key identifier.
• Basic-Constraints—X.509 basic constraints.
• Certificate-Version—X.509 certificate version.
• Data-Signature-Algorithm—X.509 hashing and encryption method.
• Fingerprint-SHA1—SHA1 hash of the certificate.
• Issuer—X.509 certificate issuer's distinguished name.
• Issuer-CN—X.509 certificate issuer's common name.
• Not-After—Date after which the certificate is not valid.
• Not-Before—Date before which the certificate is not valid.
• Public-Key-Algorithm—Algorithm used for the public key.
• RSA-Exponent—Public RSA exponent.
• RSA-Modulus—RSA algorithm modulus.
• RSA-Modulus-Size—Size of the RSA public key.
• Serial-Number—Certificate serial number.
• Signature—Certificate signature.
• Signature-Algorithm—Certificate signature algorithm.
• Subject—X.509 subject's distinguished name.
• Subject-CN—X.509 subject's common name.
• Subject-Key-Id—X.509 subject key identifier.
For more information, see the SSL Guide, Cisco ACE Application Control Engine.
Comments to this Manuals