Forum Discussion
bala_7975
Nimbostratus
Jun 26, 2009BigIP not passing the 302-redirect through
Hello
I am new to this forum! Please can someone help to resolve my problem?
We have an issue where the BigIP is not passing the https 302-redirect through. We have a Web Application Firewall that sit between the BigIP and Web server farm. The SSL traffic is terminated at BigIP. So any traffic between BigIP and web servers are http.
Whenever a request is being blocked by the WAF, it point to this 302-error page - https://wwwWebServer.Error_302.htm but page is not being pass through the BigIP. The TCPdump shows the page leaves the WAF.
I do really appreciate your help.
Thank you
Bala
- hoolio
Cirrostratus
Hi Bala, - hoolio
Cirrostratus
I'd guess the app is sending a redirect to http://... not https://. You'd see this in the Location header of the 30x redirect. If that's the case, you can rewrite the redirect to https:// using a custom HTTP profile with rewrite redirects enabled. Check the online help in the GUI for the HTTP profile for details. - bala_7975
Nimbostratus
When the request is blocked by the web application firewall, the WAF sends a redirect to this HTTPS and not HTTP. This page resides on one of the web servers. - hoolio
Cirrostratus
I think it would be helpful to use a browser plugin and an iRule which logs the request and response headers to see exactly what's happening. - bala_7975
Nimbostratus
I haven’t still unable to resolve this issue! - hoolio
Cirrostratus
Do you see the response being sent to the BIG-IP? What happens at the TCP and HTTP levels on the BIG-IP's server and client sides? It may help to open a case with F5 Support so they can help you capture and/or review tcpdumps of the failure.
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects