Forum Discussion

farslayer9_1165's avatar
farslayer9_1165
Icon for Nimbostratus rankNimbostratus
Apr 23, 2013

Need help with SSL termination

So I'm new to hands-on configuring F5. We're using Big-IP 11.3.0 and I'm working in a separate partition. I've created two virtual servers, one with service port 80 and one with 443. Both are standard, source is anything, destination for both servers is the same IP address and points to a working IIS7 box that responds only to port 80. I've also created my node (just the one server right now), and the port 80 works perfectly. My site comes up unencrypted, no problems.

 

SSL...not so much. I've created a client ssl profile and configured it with a self-signed certificate. On my HTTPS virutal server I've assigned the SSL Profile (Client) to the SSL client profile that I created and the SSL Profile (Server) is blank. However, it just times out. I HTTPS to the destination host IP (which is the same IP used by the non-HTTPS virual server profile) but it just never comes up. I could really use a hand here.

 

Thanks!

 

2 Replies

  • can you post https virtual server and pool configuration?

     

     

    tmsh list ltm virtual (name)

     

    tmsh list ltm pool (name)
  • Please verify that port translation is NOT disabled on your port 443 virtual server.