DXS-3350SR Gigabit Layer 3 Switch
Figure 7- 21. Ciphersuite window
To set up the SSL function on the Switch, configure the following parameters and click
Apply
.
NOTE:
Certain implementations concerning the function and configuration of SSL are not
available on the web-based management of this Switch and need to be configured using the
command line interface. For more information on SSL and its functions, see the
DXS-3350SR
Command Line Reference
Manual
, located on the documentation CD of this product.
Parameter
Description
Configuration
SSL Status
Use the pull-down menu to enable or disable the SSL status on the switch.
The default is
Disabled
.
Cache Timeout (60-86,400 sec)
This field will set the time between a new key exchange between a client
and a host using the SSL function. A new SSL session is established
every time the client and host go through a key exchange. Specifying a
longer timeout will allow the SSL session to reuse the master key on future
connections with that particular host, therefore speeding up the negotiation
process. The default setting is
600
seconds.
Ciphersuite
RSA with RC4 128 MD5
This ciphersuite combines the RSA key exchange, stream cipher RC4
encryption with 128-bit keys and the MD5 Hash Algorithm. Use the pull
down menu to enable or disable this ciphersuite. This field is
Enabled
by
default.
RSA with 3DES EDE CBC SHA
This ciphersuite combines the RSA key exchange, CBC Block Cipher
3DES_EDE encryption and the SHA Hash Algorithm. Use the pull down
menu to enable or disable this ciphersuite. This field is
Enabled
by default.
DHS DSS with 3DES EDE CBC
SHA
This ciphersuite combines the DSA Diffie Hellman key exchange, CBC
Block Cipher 3DES_EDE encryption and SHA Hash Algorithm. Use the
pull down menu to enable or disable this ciphersuite. This field is
Enabled
by default.
RSA EXPORT with RC4 40 MD5
This ciphersuite combines the RSA Export key exchange and stream
cipher RC4 encryption with 40-bit keys. Use the pull down menu to enable
or disable this ciphersuite. This field is
Enabled
by default.
SSL Status
Use the pull down menu to enable or disable the SSL status on the Switch.
The default is
Disabled
.
NOTE:
Enabling the SSL command will disable the web-based Switch management. To log on to
the Switch again, the header of the URL must begin with https://. Entering anything else into the
address field of the web browser will result in an error and no authentication will be granted.
196
Summary of Contents for xStack DXS-3350SR
Page 114: ...DXS 3350SR Gigabit Layer 3 Switch Figure 6 56 Access Profile Configuration IP 105 ...
Page 118: ...DXS 3350SR Gigabit Layer 3 Switch Figure 6 59 Access Rule Configuration window IP window 109 ...
Page 125: ...DXS 3350SR Gigabit Layer 3 Switch Figure 6 66 Access Rule Display Packet Content 116 ...
Page 129: ...DXS 3350SR Gigabit Layer 3 Switch Figure 6 70 Second 802 1X Authenticator Settings menu 120 ...
Page 284: ......