Cisco Cisco ACE Application Control Engine Module Technisches Handbuch

Seite von 12
Configure ACE Module for End to End SSL
Termination
Document ID: 107401
Contents
Introduction
 Prerequisites
      Requirements
      Components Used
      Conventions
 Configure
      Network Diagram
      Configurations
 Verify
 Troubleshoot
Troubleshooting Procedure (Optional)
Related Information
Introduction
This document provides a sample configuration for the Application Control Module (ACE) for end to end
Secure Socket Layer (SSL) termination. This configuration keeps traffic encrypted from client to server and
provides the ability to use cookies for session persistence as well as make Layer 7 (L7) load balancing
decisions.
This document does not cover how to create or import certificates and keys. Refer to Application Control
Engine Module SSL Configuration Guide, Managing Certificates and Keys for more information.
This sample uses two contexts:
The Admin context is used for remote management and Fault Tolerant (FT) configuration.
• 
The context C1 is used for load balancing.
• 
Prerequisites
Requirements
Ensure that you meet these requirements before you attempt this configuration:
Both ACE modules need to have certificates and keys.
• 
Load balanced servers need to be configured to accept SSL connections.
• 
Components Used
This document is not restricted to specific software and hardware versions.
The information in this document was created from the devices in a specific lab environment. All of the
devices used in this document started with a cleared (default) configuration. If your network is live, make sure