Chapter 4 Using the Configuration Manager
Using Client and Server Certificate Authentication
4-22
Cisco 11000 Series Secure Content Accelerator Configuration Guide
78-13124-06
4.
Enter the following commands to enable server certificate authentication, set
the handling authentication of errors to the most stringent level, and assign
the certificate group to use for comparison. (The final command must be
entered on a single line.)
(config-ssl-backend[myBackServ])# serverauth enable
(config-ssl-backend[myBackServ])# serverauth ignore none
(config-ssl-backend[myBackServ])# certgroup serverauth
servTrustGroup
5.
Enter a domain name to use for certificate comparison. This is necessary only
for backend servers when server certificate authentication is not set to ignore
domain name errors. (The final command must be entered on a single line.)
(config-ssl-backend[myBackServ])# serverauth domain-name
“www.mycorp.com”
6.
Exit to Privileged mode, and save the configuration to flash memory. If it is
not saved, the configuration is lost during a power cycle or when the reload
command is used.
(config-ssl-backend[myBackServ])# finished
SCA# write flash
SCA#