The defaut ssl.conf contains the nokeepalive etc settings. When those
setting were active, the ISA server recored abortive shutdowns from
Apache. Without the settings, the ISA server seems to be have less
abortive shutdowns, but the time to complete SSL handshake is very
high. The ISA users are able to see the pages over SSL but with delays.
In the APACHE LOGS, the ISA server uses RC4-MD5 Ciphers. Is that a
problem?
How much slow should SSL with client authentication be over non-ssl
connections? Is there a general thumd-rule that can be followed given a
size of the requests(GETs)?
I am using a self-signed CA.
If you have experienced a similar situation, please share your
solution(s) which can assist in improving the response and fixing the
error messages.
Regards
Shabbir