Forum Discussion
AAM features and HTTPS VS
Hi,
I guess it very obvious question but I was not able to find some direct pointer in docs.
Scenario:
- Clients using https to access web application
- AAM should be used for improving web app performance (features like caching, compression, IBR etc.)
I assume that logically VS handling such setup has to be configured for SSL Offload (clientssl configured). Or there is any other option here? Could Proxy SSL option be used here as well?
Generally speaking is that possible to use mentioned acceleration features without somehow decrypting https at the BIG-IP device so encryption-decryption has to be moved from target web application server to BIG-IP?
Piotr
2 Replies
- BinaryCanary_19Historic F5 Account
You can't inspect the traffic and do intelligent things with it if it's encrypted.
So in general, you have to decrypt, which usually means SSL offload. You can use Proxy SSL too: https://support.f5.com/kb/en-us/solutions/public/13000/300/sol13385.html?sr=45531841
- dragonflymr
Cirrostratus
Thanks a lot for confirmation, I was pretty sure that it's only logical option (or rather two) but as not experienced enough decided that better safe, than sorry :-) Piotr
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com