C-173
Cisco 11000 Series Secure Content Accelerator Configuration Guide
78-13124-06
Appendix C Command Summary
Configuration Command Set
Usage Guidelines
Availability: Serial, Telnet; FIPS Mode (serial only)
(This command must be entered on one line.) Any combination of options can be
used currently. Use the no form of the command to cease using the specific option.
The following table presents the header fields sent using the httpheader
client-cert command. Note that the hostname is inserted only if the httpheader
prefix is enabled. By default, all occurrences of “hostname-” will be “SSL-”.
prefixstring
The string to use as a header prefix.
session
Adds SSL session information to the HTTP stream.
Table C-20 Headers Inserted with httpheader client-cert Command
Header Field
Description
hostname-ClientCert-Certificate-Version
x509 Certificate version
hostname-ClientCert-Data-Signature-Algorithm
x509 Hashing and encryption method
hostname-ClientCert-Error
Error conditions
hostname-ClientCert-Fingerprint
Hash output
hostname-ClientCert-Issuer-CN
x509 Certificate issuer common name
hostname-ClientCert-issuer
x509 Certificate issuer distinguished name
hostname-ClientCert-Not-After
Certificate not valid after this date
hostname-ClientCert-Not-Before
Certificate not valid before this date
hostname-ClientCert-PEM
Full PEM-encoded certificate output
hostname-ClientCert-Public-Key-Algorithm
Public key algorithm
hostname-ClientCert-RSA-Exponent
Public exponent
hostname-ClientCert-RSA-Modulus-Size
RSA private key size
hostname-ClientCert-RSA-Modulus
RSA modulus
hostname-ClientCert-RSA-Public-Key-Size
RSA public key size
hostname-Clientcert-Serial-Number
Certificate serial number
hostname-ClientCert-Signature-Algorithm
Certificate signature algorithm
hostname-ClientCert-Signature
Certificate signature