Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
I would like to create the following situation on an ASA Firewall, but i can't get find a working solution on new firmware.Incomming traffic on outside interface on ip 1.1.1.1 can be tcp/443 or tcp/80.If traffic is on tcp/80 NAT to 2.2.2.1 tcp/80 if...
We are using a Ace module running version 3.0We do have a service which can now be reached by a url like https://www.xxx.com/yyy/ < notice the last /This is running via the Ace which terminates SSL and so on..So now our client wants an url like http...
We have a CSS11506 with SSL module.We want to initiate a SSL session with a client certificate to a backend server running IIS 5.0 and doing certificate mapping.We see in the traces that the SSL handshaking is performed but for some reason the SSL mo...
I got the SSL initiation setup working with the backend-server setup. The cleint certificate is checked via the CRL because there is CDP information in the certificate.However we like to validate also the servercertificate. When we use a ssl-server c...
We previously used CSS 11000 series and made some scripts with xml files to perform some actions on it.This was working fine.No we replaced these Css'es with CSS11500 series.When i now run these scripts on the CSS11500 i get the message:AUG 8 13:58:...
Gilles,Beneath the answer from a Microsoft engineer. I understand that IIS is not asking for a client certificate in the initial negotiation. When a Certificate is needed IIS will renegotiate the SSL connection. Is there anyway the SSL module can ant...
We use an 11506 and in the advanced Configuration guide of version 7.20 is it mentioned that is should work. On the older type CSS11000 it was working.It looks like the CSS doesn't understand XML anymore.And we use very basic scrips like mentioned.