Forum Discussion
Best practice for HTTP and HTTPS backend
Dan - are you offloading SSL on the virtual server and then sending the traffic from the f5 to the web server over HTTP? If so then this is fine - you could even use the same pool on the 443 VS. Then, F5 is doing the SSL work (which it's great at) and this means the server doesn't have to. Internally you may not need the traffic to be re-encrypted. This would be a local decision for you. I've seen it both ways i.e. we've also re-encrypted the internal traffic.
If you wanted to re-encrypt the traffic (using a Server SSL profile) then I don't believe you can use the same backend port (8081), you'd have to setup a new port on the server to accept SSL.
Hope this answers your question.
N
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com