Configuring the domain 99Table 6Configuring SSL server (cont’d.)/cfg/domain #/serverfollowed by:ssl Accesses the SSL Settings menu, in order toconfigure SSL settings for the portal server (see“Configuring SSL settings” (page 102)).adv Accesses the Advance settings menu, in orderto configure traffic log settings for a syslog server(see “Configuring traffic log settings” (page 105)).Tracing SSL trafficTo verify connectivity and to capture information about SSL and TCP trafficbetween clients and the portal server, use the following command:/cfg/domain #/server/traceThe Trace menu appears.The Trace menu includes the following options:Table 7Tracing SSL traffic/cfg/domain #/server/tracefollowed by:ssldump Creates a dump of the SSL traffic flowingbetween clients and the portal server. You areprompted to enter the following information:• ssldump flags and ssldumpfilter—for more information aboutthe flags and filter expressions available forSSLDUMP using UNIX, see http://www.tcpdump.org/tcpdump_man.html.• output modeOptions for the output mode are:• interactive—captured informationdecrypted on the screen. SSLDUMPcannot decrypt any traffic if it is started afterthe browser. SSLDUMP must be runningduring the initial SSL handshake.• tftp|ftp|sftp—the dump will be savedas a file to the file exchange server youspecify, using a destination file name youNortel Secure Network Access SwitchUsing the Command Line InterfaceNN47230-100 03.01 Standard28 July 2008Copyright © 2007, 2008 Nortel Networks.