Collapse AllExpand All

18.8.5.1.6. Dynamic Behavior Previous topic Parent topic Child topic Next topic

Dynamic features:
  1. Change of HFA TLS Parameters
    • CA/private certificate addition/removal
    • Expiration of CA/private certificate (affects rekeying)
    • CRL download
    Static features:
    • TLS version configuration
    • TLS encryption configuration
    • TLS key agreement configuration
    • TLS AES operation mode configuration
    Static features require CGW reboot for the changes to take effect, which is also indicated by icon in WBM. All dynamic features can be adjusted during CGW runtime. Such event triggers new SSL/TLS handshake and client certificate chain verification with all consequences for all active connections. All established calls should survive if handshake succeeds.