Previous Topic: Generating SSL Certificates

Next Topic: Setting Expiration


Using SSL Mode

CA XCOM Data Transport uses SSL in client/server mode. In client/server mode, certificates are required for both the local (initiating) and remote (receiving) CA XCOM Data Transport partners. SSL considers the local CA XCOM Data Transport partner to be the client and the remote CA XCOM Data Transport partner to be the server.

When establishing the SSL connection, the server sends the server certificate to the client for verification. After the client verifies the server certificate, the client sends the client certificate to the server for verification. Both the client and the server must verify the CA certificate from the other.

Setting up SSL for CA XCOM Data Transport involves the following tasks:

  1. Set the expiration for the CA Certificate.
  2. Create the CA Certificate.
  3. Create the server certificate.
  4. Create the client certificate.
  5. Configure the CA XCOM Data Transport SSL server.
  6. Configure the CA XCOM Data Transport client.