iTP Secure WebServer System Administrator's Guide (iTPWebSvr 6.0+)
Configuration Directives
iTP Secure WebServer System Administrator’s Guide—523346-002
A-11
Examples of Secure Transport Protocol Support
(Port 4430)
Examples of Secure Transport Protocol Support (Port 4430)
To accept SSL 2.0, SSL 3.0, and PCT connections:
AcceptSecureTransport -transport /G/ZTC0 -cert {CN=...}
To accept SSL 2.0 and PCT connections:
AcceptSecureTransport -transport /G/ZTC0 -cert {CN=...} -nosslv3
To accept SSL 3.0 and PCT connections:
AcceptSecureTransport -transport /G/ZTC0 -cert {CN=...} -nosslv2
To accept SSL 2.0 and SSL 3.0 connections:
AcceptSecureTransport -transport /G/ZTC0 -cert {CN=...} -nopct
To accept only PCT connections:
AcceptSecureTransport -transport /G/ZTC0 -cert {CN=...}\
-nosslv2 -nosslv3
or
AcceptSecureTransport -transport /G/ZTC0 -cert {CN=...} -nossl
Examples of Cipher Support
To allow only Triple DES (the most secure):
AcceptSecureTransport -transport /G/ZTC0 -cert {DN=...}\
-port 4433 -ciphers {DES-CBC3-MD5 DES-CBC3-SHA1}
#
# Allows all SSLv2 ciphers.
#
set SSLv2_CipherList {
RC4-MD5
RC2-CBC-MD5
DES-CBC3-MD5
DES-CBC-MD5
EXP-RC4-MD5
EXP-RC2-CBC-MD5
}
AcceptSecureTransport -transport /G/ZTC0 -cert {DN=....}
-ciphers $SSLv2_CipherList
#
To allow all supported ciphers:
#
set cipherList {
DES-CBC3-SHA1
DES-CBC-SHA1
RC2-CBC-SHA1
RC4-SHA1