Forum Discussion

AP15's avatar
AP15
Icon for Altostratus rankAltostratus
Aug 14, 2023
Solved

Performance L4 VS - HTTPS [X-forwarded-for]

Would someone confirm or share their experience

Can we have original client address passed through fastl4 profile to server on Performance L4 VS? 

We have HTTPS [443] Performance L4 VS and trying to pass original client address to server. Server hosts the SSL certificate. 

  • AP15 Regardless of the profile you are using you cannot modify or view anything that is encrypted without the SSL cert. If you want to do anything on the F5 with encrypted traffic you would have to terminate traffic at the F5 and if the server has to also have traffic be HTTPS you can re-encrypt the traffic using the SSL Server Profile. Second to this you should not be able to manipulate HTTP traffic either it being HTTPS or HTTP with a fastL4 profile.

1 Reply

  • AP15 Regardless of the profile you are using you cannot modify or view anything that is encrypted without the SSL cert. If you want to do anything on the F5 with encrypted traffic you would have to terminate traffic at the F5 and if the server has to also have traffic be HTTPS you can re-encrypt the traffic using the SSL Server Profile. Second to this you should not be able to manipulate HTTP traffic either it being HTTPS or HTTP with a fastL4 profile.