beautypg.com

HP Traffic Director sa7220 User Manual

Page 179

background image

C H A P T E R 5

Policy Group Commands

167

config policygroup
service header-name

NOTE: The SA7220
supports ONLY the

source-ip

parameter.

The SA8200/SA8220
support all four parameters
(certificate, cipher-used,
source-ip, and ssl-id). With
header-certificate enabled,
and using Internet
Explorer* with a non-
trusted CA (for example, a
broker-generated or
Microsoft IIS) server-
generated server certificate,
the client certificate may not
pass through on the first
request. Pass-through
behaves correctly if the
server certificate is
obtained from a recognized
CA such as Verisign*.

Sets the name used in the HeaderNameField of the HTTP headers
inserted when

header

or

header-certificate

are enabled,

on a per-service basis.

config policygroup <

policy-

name> service

<

service-

name> header-name [certificate

| cipher-used |

source-ip | ssl-id ]

where:

policy-name

is the name of the policy group

service-name

is the name of the service

headername

is the name to use in the HTTP header

With header enabled, the following are the default HTTP header
names:

source-ip: HP_SOURCE_IP

With header-certificate enabled, the following are the default
HTTP header names:

certificate: HP_CLIENT_CERTIFICATE

cipher-used: HP_CIPHER_USED

ssl-id: HP_SSL_SESSION_ID

Command

Description