Configuring the SSL template

A feature that uses the SSL template performs the SSL operation to measure the time required to establish an SSL connection to an SSL server.

Before you configure the SSL template, configure the SSL client policy. For information about configuring SSL client policies, see Security Configuration Guide.

To configure the SSL template:

Step

Command

Remarks

1. Enter system view.

system-view

N/A

2. Create an SSL template and enter its view.

nqa template ssl name

By default, no SSL templates exist.

3. (Optional.) Specify the destination IP address of the operation.

  • IPv4 address:destination ip ip-address

  • IPv6 address:destination ipv6 ipv6-address

By default, no destination IP address is configured.

4. (Optional.) Specify the destination port number for the operation.

destination port port-number

By default, the destination port number is not specified.

5. (Optional.) Specify the source IP address for the probe packets.

  • IPv4 address:
    source ip
    ip-address

  • IPv6 address:
    source ipv6
    ipv6-address

By default, the packets take the primary IP address of the output interface as their source IP address.

The source IP address must be the IP address of a local interface, and the interface must be up. Otherwise, no probe packets can be sent out.

6. Specify an SSL client policy.

ssl-client-policy policy-name

By default, no SSL client policy is specified.