icap-service secure certificate

Prev Next

Configures the SSL certificate that is submitted by the Internet Content Adaptation Protocol (ICAP) server to connect to ICAP clients over secure ICAP connections.

The Network Security appliance acting as an ICAP server uses the default system-self-signed certificate to establish secure communication. If you want to use another certificate, you must import the server certificate and matching key on the Network Security appliance and specify the same certificate as part of the ICAP service settings. For details about how to import a server SSL certificate, refer to the Trellix System Security Guide.

For details about how to configure the settings for the ICAP service, see the "Configuring Threat Management" chapter of the Network Security User Guide.

Syntax

icap-service secure certificate <certificateName>

Parameters

<certificateName>

Name of the certificate. By default, the system-self-signed certificate is used to establish secure communication.

Example

The following example shows how to configure the default system-self-signed certificate.

hostname (config) # icap-service secure certificate system-self-signed 

User role

Admin

Command mode

Config

Supported appliances

This command is supported on the following appliances running the specified releases or later:

  • Network Security: Release 8.3