-
-
Appendix A: Sample migration of the SSL configuration after upgrade
-
Appendix B: Default front-end and back-end SSL profile settings
This content has been machine translated dynamically.
Dieser Inhalt ist eine maschinelle Übersetzung, die dynamisch erstellt wurde. (Haftungsausschluss)
Cet article a été traduit automatiquement de manière dynamique. (Clause de non responsabilité)
Este artículo lo ha traducido una máquina de forma dinámica. (Aviso legal)
此内容已经过机器动态翻译。 放弃
このコンテンツは動的に機械翻訳されています。免責事項
이 콘텐츠는 동적으로 기계 번역되었습니다. 책임 부인
Este texto foi traduzido automaticamente. (Aviso legal)
Questo contenuto è stato tradotto dinamicamente con traduzione automatica.(Esclusione di responsabilità))
This article has been machine translated.
Dieser Artikel wurde maschinell übersetzt. (Haftungsausschluss)
Ce article a été traduit automatiquement. (Clause de non responsabilité)
Este artículo ha sido traducido automáticamente. (Aviso legal)
この記事は機械翻訳されています.免責事項
이 기사는 기계 번역되었습니다.책임 부인
Este artigo foi traduzido automaticamente.(Aviso legal)
这篇文章已经过机器翻译.放弃
Questo articolo è stato tradotto automaticamente.(Esclusione di responsabilità))
Translation failed!
Appendix B: Default front-end and back-end SSL profile settings
A default front-end profile has the following settings:
sh ssl profile ns_default_ssl_profile_frontend
1)Name: ns_default_ssl_profile_frontend
Configuration for Front-End SSL profile
DH: DISABLED
Ephemeral RSA: ENABLED Refresh Count: 0
Session Reuse: ENABLED Timeout: 120 seconds
Non FIPS Ciphers: DISABLED
Cipher Redirect: ENABLED Redirect URL: http://10.102.28.212/redirect.html
Client Auth: DISABLED
SSL Redirect: DISABLED
SNI: DISABLED
SSLv3: DISABLED TLSv1.0: ENABLED TLSv1.1: ENABLED TLSv1.2: ENABLED
Push Encryption Trigger: Always
PUSH encryption trigger timeout: 1 ms
Send Close-Notify: YES
Push flag: 0x0 (Auto)
Deny SSL Renegotiation NO
SSL quantum size: 8 kB
Strict CA checks: NO
Encryption trigger timeout 100 mS
Encryption trigger packet count: 45
Use only bound CA certificates: DISABLED
Subject/Issuer Name Insertion Format: Unicode
Strict Host Header check for SNI enabled SSL sessions: NO
ECC Curve: P_256, P_384, P_521
1) Cipher Name: AES Priority :2
Description: Predefined Cipher Alias
1) Vserver Name: v1
2) Vserver Name: nshttps-::1l-443
3) Vserver Name: nsrpcs-::1l-3008
4) Vserver Name: nskrpcs-127.0.0.1-3009
5) Vserver Name: nshttps-127.0.0.1-443
6) Vserver Name: nsrpcs-127.0.0.1-3008
Done
<!--NeedCopy-->
A default back-end profile has the following settings:
sh ssl profile ns_default_ssl_profile_backend
1)Name: ns_default_ssl_profile_backend
Configuration for Back-End SSL profile
Session Reuse: ENABLED Timeout: 300 seconds
Non FIPS Ciphers: DISABLED
Server Auth: DISABLED
SSLv3: DISABLED TLSv1.0: ENABLED TLSv1.1: DISABLED TLSv1.2: DISABLED
Push Encryption Trigger: Always
PUSH encryption trigger timeout: 1 ms
Send Close-Notify: YES
Push flag: 0x0 (Auto)
Deny SSL Renegotiation ALL
SSL quantum size: 8 kB
Strict CA checks: NO
Encryption trigger timeout 100 mS
Encryption trigger packet count: 45
Use only bound CA certificates: DISABLED
ECC Curve: P_256, P_224, P_521
1) Cipher Name: AES Priority :1
Description: Predefined Cipher Alias
2) Cipher Name: RC4 Priority :2
Description: Predefined Cipher Alias
1) Service Name: s2
2) Service Name: s1
Done
<!--NeedCopy-->
Share
Share
In this article
This Preview product documentation is Cloud Software Group Confidential.
You agree to hold this documentation confidential pursuant to the terms of your Cloud Software Group Beta/Tech Preview Agreement.
The development, release and timing of any features or functionality described in the Preview documentation remains at our sole discretion and are subject to change without notice or consultation.
The documentation is for informational purposes only and is not a commitment, promise or legal obligation to deliver any material, code or functionality and should not be relied upon in making Cloud Software Group product purchase decisions.
If you do not agree, select I DO NOT AGREE to exit.