SSL Cryptography Overview
Note
SSL Public Key Infrastructure Overview
Cisco Content Services Switch SSL Configuration Guide
1-2
Although there are very few clients on the market today that support only SSL
version 2.0, the SSL module will be unable to pass network traffic if the client
supports only version 2.0.
A typical SSL session with the SSL module requires encryption ciphers to
establish and maintain the secure connection. Cipher suites provide the
cryptographic algorithms required by the SSL module to perform key exchange,
authentication, and Message Authentication Code (MAC). See the
Cipher Suites"
section in
details about the supported cipher suites.
This section provides an overview on SSL cryptography as implemented through
the SSL module in the CSS. It covers:
SSL Public Key Infrastructure Overview
•
•
SSL Module Cryptography Capabilities
SSL provides authentication, encryption, and data integrity in a Public Key
Infrastructure (PKI). PKI is a set of policies and procedures to establish a secure
information exchange between devices. Three fundamental elements characterize
the PKIs used in asymmetric cryptography. These three elements provide a secure
system for deploying e-commerce and a reliable environment for building
virtually any type of electronic transactions, from corporate intranets to
Internet-based e-business applications.
These elements include:
Confidentiality
•
Authentication
•
Message integrity
•
Chapter 3, Configuring SSL Certificates and Keys
Chapter 1
Overview of CSS SSL
"Specifying
OL-5655-01
for