11-7
User
Guide

for

the

Cisco

Application

Networking

Manager

5.2
OL-26572-01
Chapter
11






Configuring

SSL
Importing
SSL

Certificates
Related
Topics


Configuring
SSL,

page
11-1


Exporting
SSL

Certificates,

page
11-15


Importing
SSL

Certificates,

page
11-7


Using
SSL

Keys,

page
11-10


Importing
SSL

Key

Pairs,

page
11-11


Configuring
SSL

CSR

Parameters,
page
11-24


Generating
CSRs,

page
11-26


Configuring
SSL

Proxy

Service,

page
11-27
Importing
SSL

Certificates
You
can

import

SSL

certificates

from

a

remote

server

to

the

ACE,

which

can

support

the

following
number
of

c

ertificates

and

key

pairs

depending

on

t

he

installed

sof

tware

version:


ACE
Module:


A2(3.x)

and

earlier—3800

certificates

and

3800

key

pairs


A4(1.0)—

4096

certificates

and

4096

key

pairs


ACE
Appliance:


A3(1.x)

and

earlier—3800

certificates

and

3800

key

pairs


A3(2.x)

and

later

(i

ncluding

A4(1.0))—4096

certificates

and

4096

key

pairs
Assumptions
This
topic

assumes

the

following:


You
have

configured

the
ACE

for

server
load
balancing.

(See

the
“Information
About

Load
Balancing”
section

on

pa

ge

7-1 .)


You
have

obtained
an

SSL

certificate

from

a

certificate

authority
(CA)
and

have

placed

it

on
a
network
server

accessible

by

the

ACE.
Note
You
cannot
import
SSL

certificates

in

Building

Blocks

(Config
>
Global
>
All

Building

Blocks);
SSL
certificate

imports

are

available

only

in

virtual

context

configuration.
Procedure
Step
1
To
configure

a

virtual

context,

choose
Config
>

Devices

>

context

>

SSL

>

Certificates.
The
Certificates

table

appears,

listing

any

valid

SSL

certificates.
The
cisco-sample-cert

certificate

is

included

in

the

list

only

for

the

ACE

module

A2(3.0),

ACE

appliance
A4(1.0),
and

later

releases

of

either

device

type.

For

information

on

this

sample

certificate,

see

the
“Using
SSL

Certificates”

section

on

pa

ge

11-5 .
Step
2
In
the

Certificates

table,

do

one

of

the

following:


To
import

a

single

SSL

certificate,

click
Import.
The

Import

di

alog
box
appears.


To
import

multiple

SSL

certificates,

click
Bulk
Import.

The

Bulk

Import

dialog

box

appears.