Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

Navigation
Guide That Contains This Content
[+] Expand All
[-] Collapse All

    Configuring Redirect Server to Support HTTPS Traffic (SRC CLI)

    The SRC software supports to redirect HTTPS traffic to a configured destination web server by using the redirect server. The SRC software intercepts the traffic at port 443 and forward it to the port in which the redirect server is configured to listen for HTTPS traffic. The redirect server accepts HTTPS traffic only from the ports that you configured by using the https-port option at the [edit redirect-server ip-redirect] hierarchy level.

    Before you start with setting up a redirection for HTTPS traffic, you must create a certificate with the domain name of the URL.

    Note: Whenever you open up an HTTPS page, you get a security warning in the browser for the mismatch between common name of the certificate with the domain name of the URL until you add an exception for the certificate in the browser.

    Use the following statements to configure the redirect server to support HTTPS traffic:

    redirect-server https { port port;certificate-identifier certificate-identifier ;}

    To configure the redirect server to support HTTPS traffic:

    1. In configuration mode, enter the configuration statement that allows the SRC redirect server to redirect HTTPS traffic to a configured destination web server.
      [edit]user@host# redirect-server https
    2. Configure the HTTPS port on which the redirect server listens for requests.
      [edit redirect-server https]user@host# set port port
    3. Configure the imported Secure Sockets Layer (SSL) certificate. To import the SSL certificate, use the request security import-certificate command.

      For information about manually obtaining certificates, see Manually Obtaining Digital Certificates (SRC CLI).

      [edit redirect-server https]user@host# certificate-identifier certificate-identifier

    Published: 2014-06-12