Start TLS on XMPP Session Assertion
The Start TLS on XMPP Session Assertion allows you to start TLS communication for an existing connection with an XMPP client or server. In the case of communicating with a client, this assertion will also send a message unencrypted immediately before enabling TLS communication.
gateway90
The
Start TLS on XMPP Session Assertion
allows you to start TLS communication for an existing connection with an XMPP client or server. In the case of communicating with a client, this assertion will also send a message unencrypted immediately before enabling TLS communication.To learn about selecting the target message for this assertion, see Select a Target Message.
Using the Assertion
- Do one of the following:
- To add the assertion to the Policy Development window, see Add an Assertion.
- To change the configuration of an existing assertion, proceed to step 2 below.
- When adding the assertion, the Start TLS on XMPP Session Properties automatically appear; when modifying the assertion, right-clickStart TLS on XMPP Sessionin the policy window and chooseStart TLS on XMPP Session Propertiesor double-click the assertion in the policy window. The assertion properties are displayed.
- Configure the properties as follows:SettingDescriptionSession IDEnter the ID of the session in which to start TLS communication.DirectionFor this drop-down list, specify in which direction the session is going from the Gateway, whether to the XMPP client or to an XMPP server.Private KeyFor this drop-down list, choose a private key that the Gateway should use. This is optional if communicating with an XMPP server, but required if communicating with an XMPP client.Client AuthenticationRequiredFor this drop-down list, choose whether the authentication is required to theXMPP Client, XMPP Server, orNone.To XMPP Client:In this case, this setting specifies whether the client can or must provide a client certificate.To XMPP Server:In this case, this setting specifies whether the Gateway will present a client certificate if enabled on the XMPP server.
- Click [OK] when done.