Forum Discussion

Gambler_168259's avatar
Gambler_168259
Icon for Nimbostratus rankNimbostratus
Oct 30, 2014
Solved

How to enhance the https traffc response time through F5 BIG IP LTM for Siebel Web application and Tibco Middleware?

We are facing an issue for https traffic response time while sending traffic to TIBCO application. The response of TIBCO application for http traffic is instantaneous but for https traffic it take about 5-7 and 20-21 seconds for response respectively. We have deployed F5 BIG IP LTM with Cisco Nexus 5000 switch and Oracle Exa-Data/Exa-Logic Stack for Siebel web application/Tibco application is deployed. The network is 40G inside Exa-Stack while the Exa-Stack is connected to Cisco Nexus 5000 switches on 10G network. Cisco Nexus is connected to F5 BIG IP LTM 5000 load balancer on 10G link.... Cisco Nexus 6500 switch is connected to core 6500 switch on 4G link with ASA Firewall for client authentication and certificates verification for https/SSL vpn traffic. Traffic always passed from : Exa-Stack --> Nexus 5K --> F5 LTM --> Back to Nexus --> Cisco Core 6500 to clients via intranet or internet and reverse etc. Client dials a SSL VPN from internet to access Siebel/TIBCO application through https. We are having an issue while accessing application/VM through external network i.e. through Core 6500 switch..... So can anyone help us out with a solution for this issue or to how we can adjust settings on our F5 BIG IP LTM to ensure fast https traffic response to a user.

 

  • Have you checked by bypassing F5? Usually this is not the issue of F5. trying requesting servers directly. If the delay persists then you find that problem.

     

4 Replies

  • Sorry I'm not entirely clear where the delay is. Is the 5-21 seconds the delay as experienced by the client? Why do you think its the F5 at all? Have you used tcpdump to observe traffic?

     

  • Did you use acceleration profile already?

     

    like compression / ram cache / web acceleration / oneconnect

     

  • Have you checked by bypassing F5? Usually this is not the issue of F5. trying requesting servers directly. If the delay persists then you find that problem.

     

    • Gambler_168259's avatar
      Gambler_168259
      Icon for Nimbostratus rankNimbostratus
      Yes we have checked to route traffic from one Vm to another Vm from an internal network and the response for HTTPS was fast enough and we found no issue at all on F5. Root cause is the Core of our Client network with associated firewall configurations.