Forum Discussion
6 Replies
- Ryan_80361Cirrostratus
Your virtual server is configured for SSL passthrough. You're passing through the SSL connection to the pool members without terminating on your F5.
DevCentral has plenty of examples of SSL passthrough/bridging/offloading.
- m1978_295079Nimbostratus
My scenerio actually not pass through, rather ssl offload, client to F5 is https port 443, and from F5 to server is http. My question is there any default certificate is being used during communication between F5 and client ?
- RyannnnnnnnnAltocumulus
Your virtual server is configured for SSL passthrough. You're passing through the SSL connection to the pool members without terminating on your F5.
DevCentral has plenty of examples of SSL passthrough/bridging/offloading.
- m1978_295079Nimbostratus
My scenerio actually not pass through, rather ssl offload, client to F5 is https port 443, and from F5 to server is http. My question is there any default certificate is being used during communication between F5 and client ?
Don't you see a client SSL profile or don't you see the option to configure a client SSL profile? Check your virtual server type. Maybe it is a Performance Layer 4 virtual server.
- dragonflymrCirrostratus
Hi,
To do SSL Offload on F5 you need at least:
Standard type VS Clientssl profile assigned to VS
I any above condition is not meet there is no SSL Offload performed by VS, and if client can establish SSL session then you have SSL Passtrough as already mentioned - client is talking directly with pool members.
You can easily check it doing tcpdump on BIG-IP external and internal VLANs.
Piotr