Forum Discussion
Lewis_Long_1076
Nimbostratus
Aug 20, 2008Change from HTTP to HTTPS on same incoming Destination Port
Looking for some guideance here, I wish to look at a client coming in say on port 2100 using a browser and url like http://abc.xyz.com:2100 and instead redirect them to come back on https://abc.xyz.com:2100 is there a easy way in irules to do this. I would like to not allow the http connect and make them come back via a redirect to https.
3 Replies
- Patrick_Chang_7Historic F5 AccountI don't think it can be done. Here is the order of how things are done
1) TCP Handshake
2) SSL Handshake
3) Send HTTP request
One can't know to switch back and forth between HTTP and HTTPS on demand because it would require knowing whether the client was coming in SSL or not ahead of time. - perfmon_109693
Nimbostratus
Two protocols over one port....hmmm....not sure about what the iRule logic would be. talking over a designated port typically means the higher protocol layers are pre-arranged, or a pre-arranged 'generic' protocol will do some specific protocol negotiation. - JRahm
Admin
That option (Non-ssl connections) is in the clientssl profile. Enabling this feature allows you to do ssl and non-ssl on same port-specific vip. You could also do an iRule. Reference this thread:
http://devcentral.f5.com/Default.aspx?tabid=53&forumid=5&tpage=1&view=topic&postid=12581259
Click here
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects
