CH
A

P

T

E

R
11-1
User
Guide

for

the

Cisco

Application

Networking

Manager

5.2
OL-26572-01
11
Configuring
SSL
Date:
3/

28/12
This
chapter

describes

how

to

configure

Secure

Sockets

Layer

(SSL)

on

the

Cisco

Application

Control
Engine
(ACE)

using

Cisco

Application

Networking

Manager

(ANM).
Note
When
naming

ACE

objects

(such

as

a

real

server,

virtual

server,

parameter

map,

class

map,

health

probe,
and
so

on),

enter

an

alphanumeric

string

of

1

to

64

characters,

which

can

include

the

following

special
characters:
underscore

(_),

hyphen

(-),

dot

(.),

and

asterisk

(*)

.

Spaces

ar

e

not


al

lowed.


If
you

are

using

ANM

with

an

ACE

module

or

ACE

appliance

and

you

configure

a

named

object

at

the
ACE
CLI,

keep

in

mind

that

ANM

does

not

support

all

of

the

special

characters

that

the

ACE

CLI

allows
you
to

use

when

configuring

a

named

object.

If

you

use

special

characters

that

ANM

does

not

support,
you
may

not

be

able

to

import

or

manage

the

ACE

using

ANM.
This
chapter

includes

the

following

sections:


SSL
Overview,

page
11-2


SSL
Configuration

Prerequisites,

page
11-2


Summary
of


SSL

Configuration

Tasks,

page
11-3


SSL
Setup

Sequence,

page
11-4


Using
SSL

Cer

tificates,

page
11-5


Using
SSL

Keys,

page
11-10


Configuring
SSL

Parameter

Maps,
page
11-18


Configuring
SSL

Chain

Group

Parameters,

page
11-23


Configuring
SSL

CSR

Parameters,
page
11-24


Generating
CSRs,

page
11-26


Configuring
SSL

Proxy

Service,

page
11-27


Configuring
SSL

OCSP

Service,

page
11-29


Enabling
Client
Authentication,

page
11-31