User's Manual

Table Of Contents
Configuration Guide of XGS-5240-Series
53-3
53.2 SSL Configuration Task List
1. Enable/disable SSL function
2. Configure/delete port number by SSL used
3. Configure/delete secure cipher suite by SSL used
4. Maintenance and diagnose for the SSL function
1. Enable/disable SSL function
Command
Explanation
Global Mode
ip http secure-server
no ip http secure-server
Enable/disable SSL function.
2. Configure/delete port number by SSL used
Command
Explanation
Global Mode
ip http secure-port <port-number>
no ip http secure-port
Configure port number by SSL used, the
no ip http secure-port command delet
es the port number.
3. Configure/delete secure cipher suite by SSL used
Command
Explanation
Global Mode
ip http secure-ciphersuite {des-cbc3-
sha|rc4-128-sha| des-cbc-sha}
no ip http secure-ciphersuite
Configure/delete secure cipher suite by S
SL used.
4. Maintenance and diagnose for the SSL function
Command
Explanation
Admin Mode or Configuration Mode
show ip http secure-server status
Show the configured SSL information.
debug ssl
no debug ssl
Open/close the DEBUG for SSL function.
53.3 SSL Typical Example
When the Web function is enabled on the switch, SSL can be configured for users
to access the web interface on the switch. If the SSL has been configured, communic
ation between the client and the switch will be encrypted through SSL for safety.
Firstly, SSL should be enabled on the switch. When the client tries to access the