Forum Discussion

nizam_67536's avatar
nizam_67536
Icon for Nimbostratus rankNimbostratus
Apr 13, 2010

Big-IP for SSL termination

Hello guys,

 

Actually we have a SSL connexion between 2 remotes AXIS servers. 1 is at our side and the other one at our partner side.

 

We have a LTM1500 at our side and we want to use it for the SSL termination. So our internal application will have no need to use the Axis but only use the VIP of Big-IP.

 

My question is how can I do this task (sslclient, sslserver, etc.) ?

 

Tnx in advance

2 Replies

  • Hello Nizam,

     

     

    sounds like you just need to implement a client ssl profile. This will only mean only the clientside gets encrypted, the backend (serverside) will be sent in the clear after the BigIP decrypts the traffic.

     

     

    Let me know If i have misunderstood anything.

     

     

    Thanks.
  • Hamish's avatar
    Hamish
    Icon for Cirrocumulus rankCirrocumulus
    That also assumes that the AXIS doesn't mind if you talk cleartext to it from the local F5. Some servers/devices require you to insert something into the stream, just to say that the SSL was offloaded... Some don't care... YMMV.

     

     

    H