NOTE: Prior to completing the instructions in this section, you should have received and installed all the certificates requested in Preparing a Certificate Signing Request (CSR) .
For each of the acceleration services you identified in Ensuring that Each Web Server Has an Acceleration Service , complete the following steps:
If the service doesn't exist, you must create it by completing the instructions in Web Server Accelerator Setup in the Volera Excelerator 2.3 Administration Guide.
IMPORTANT: Two fields specified in the Web server accelerator definitions you create are critical to Secure Excelerator's link transformation feature.
These fields are the DNS name specified in the Web Server Addresses list and the Web Server Port specified in the Secure Excelerator Options dialog box. Their role in link transformation is explained in Figure 5.
In the browser-based management tool, click Cache > Web Server Accelerator > the target Web Server Acceleration service > Modify.
Continue with Specifying an SSL Listening Port and Selecting a Certificate .
Complete the following steps:
In the Web Server Accelerator dialog box, check Enable Secure Excelerator.
In the SSL Listening Port field, type the SSL port number for the service.
The default SSL port is 443.
IMPORTANT: If you are using the same acceleration IP address for multiple Web server accelerators, you must ensure that each definition uses a unique SSL port for its Secure Excelerator service.
In the Certificate drop-down list, select the certificate you obtained for the Web server being accelerated.
NOTE: As explained in Obtaining Appliance Certificates for Each Web Server and Establishing Secure Connections with Browsers , you can have the appliance automatically generate SSL certificates, you can manually create them, or you can purchase them from third-party CAs. For most installations, the third-party CA option works best.
Continue with Selecting an Authentication Profile .
Complete the following steps:
In the Web Server Accelerator dialog box, check Enable Authentication > click Authentication Options.
In the Existing Profiles list, select the profile you want this service to use.
Click Add > OK.
Continue with Configuring the Service to Use Secure Excelerator .
Complete the following steps:
In the Web Server Accelerator dialog box, check Enable Secure Excelerator > click Secure Excelerator Options.
If the content being served from this accelerator should not be cached by requesting browsers, ensure that the Mark Pages Non-Cacheable on the Browser option is checked.
If the Web server being accelerated doesn't require a secure connection with the appliance, click OK > click OK > click Apply > return to Opening the Web Server Acceleration Service .
Otherwise, continue with Importing the Trusted Root Certificates .
If a secure connection between the Web server and Secure Excelerator is required, you must import the certificate files you identified in Obtaining Trusted Root Certificates .
Complete the following steps:
Using Notepad, open the first certificate file you saved in Storing Trusted Root Certificate Files .
In Notepad copy the file contents to the clipboard by clicking > Edit > Select All > Edit > Copy.
In the Secure Exceleration Options dialog box (accessed in Configuring the Service to Use Secure Excelerator ), check Enable Secure Access between Secure Excelerator and Web Server.
Click Insert > Import Trusted Root.
In the Imported Filename field, type the root name of the certificate you opened in Notepad and include the extension .DER in the filename.
Click the Insert Trusted Root Contents box > press Ctrl+V to copy the clipboard contents into the box.
NOTE: If you are using Internet Explorer and the paste operation does not work (nothing is copied), you must download and install the Microsoft virtual machine on your workstation. To obtain this component, search for Microsoft VM on the Microsoft Web site.
Click OK.
Using Notepad, open the next certificate file and repeat the process from Step 2 until all CA certificates have been imported.
When the entire chain has been imported, click OK > OK > Apply.
Repeat the accelerator configuration process by returning to Opening the Web Server Acceleration Service until all the services have been configured to use Secure Excelerator.