Processing of SSL Flows by the SSL Module
OL-5655-01
Examples of CSS SSL Configurations
This chapter describes the SSL flow process with the SSL module and includes
example proxy configurations. Each configuration section includes a
running-configuration example and an accompanying illustration.
This section covers:
Processing of SSL Flows by the SSL Module
•
SSL Transparent Proxy Configuration — One SSL Module
•
SSL Transparent Proxy Configuration — Two SSL Modules
•
SSL Transparent Proxy Configuration — HTTP and Back-End SSL Servers
•
SSL Full Proxy Configuration — One SSL Module
•
SSL Initiation Configurations
•
To terminate SSL flows, the SSL module functions as a proxy server, which means
that it is the TCP endpoint for inbound SSL traffic. The SSL module maintains a
separate TCP connection for each side of the communications, the client side and
the server side. The proxy server can perform both TCP and SSL handshakes.
The following example is intended as an overview on the flow process; how the
CSS and SSL module translate flows from HTTPS-to-HTTP for inbound packets
and from HTTP-to-HTTPS for outbound packets.
C H A P T E R
Cisco Content Services Switch SSL Configuration Guide
8
8-1