Troubleshooting guide

1-37
Cisco Wide Area Application Services Configuration Guide
OL-26579-01
Chapter 1 Configuring Application Acceleration
Enabling and Disabling the Global Optimization Features
Step 6 Choose the cipher suite that you want to add in the Ciphers field.
Note If you are establishing an SSL connection to a Microsoft IIS server, do not select a DHE-based
cipher suite.
Step 7 Choose the priority for the selected cipher suite in the Priority field.
Note When SSL peering service is configured, the priority associated with a cipher list on a core
device takes precedence over the priority associated with a cipher list on an edge device.
Step 8 Click Add to include the selected cipher suite on your cipher list, or click Cancel to leave the list as it is.
Step 9 Repeat Step 5 through Step 8 to add more cipher suites to your list as desired.
Step 10 (Optional) To change the priority of a cipher suite, check the cipher suite check box and then use the up
or down arrow buttons located below the cipher list to prioritize.
Note The client-specified order for ciphers overrides the cipher list priority assigned here if the cipher
list is applied to an accelerated service. The priorities assigned in this cipher list are only
applicable if the cipher list is applied to SSL peering and management services.
Step 11 (Optional) To remove a cipher suite from the list, check the cipher suite’s box and then click Delete.
Step 12 Click Submit when you are done configuring the cipher list.
Note For a WAAS Express device, click OK to save the cipher list configuration.
SSL configuration changes will not be applied on the device until the security license has been
enabled on the device.
Working with Certificate Authorities
The WAAS SSL acceleration feature allows you to configure the Certificate Authority (CA) certificates
used by your system. You can use one of the many well-known CA certificates that is included with
WAAS or import your own CA certificate.
To manage your CA certificates, follow these steps:
Step 1 From the WAAS Central Manager menu, choose Devices > device-name (or Device Groups >
device-group-name).
Step 2 Choose Configure > Security > SSL > Certificate Authorities.
The SSL CA Certificate List window appears (see Figure 1-23).