517
Predefined user roles
network-admin
mdc-admin
Usage guidelines
The SSL session renegotiation feature enables the SSL client and server to reuse a previously
negotiated SSL session for an abbreviated handshake.
Disabling session renegotiation causes more computational overhead to the system but it can avoid
potential risks. Disable SSL session renegotiation only when explicitly required.
Examples
#Disable SSL session renegotiation.
<Sysname> system-view
[Sysname] ssl renegotiation disable
ssl server-policy
Use
ssl server-policy
to create an SSL server policy and enter its view, or enter the view of an
existing SSL server policy.
Use
undo ssl server-policy
to delete an SSL server policy.
Syntax
ssl server-policy
policy-name
undo ssl server-policy
policy-name
Default
No SSL server policies exist.
Views
System view
Predefined user roles
network-admin
mdc-admin
Parameters
policy-name
: Specifies a name for the SSL server policy, a case-insensitive string of 1 to 31
characters.
Usage guidelines
This command creates an SSL server policy for which you can configure SSL parameters such as a
PKI domain and supported cipher suits. An SSL server policy takes effect only after it is associated
with an application such as HTTPS.
Examples
# Create an SSL server policy named
policy1
and enter its view.
<Sysname> system-view
[Sysname] ssl server-policy policy1
[Sysname-ssl-server-policy-policy1]
Related commands
display ssl server-policy
Содержание FlexNetwork 7500 Series
Страница 350: ...335 Related commands display port security port security enable ...
Страница 379: ...364 Sysname system view Sysname keychain abc mode absolute Sysname keychain abc tcp kind 252 ...
Страница 519: ...504 Related commands display ssh2 algorithm ssh2 algorithm cipher ssh2 algorithm key exchange ssh2 algorithm mac ...