Forum Discussion
hooleylist
Dec 17, 2010Cirrostratus
This example is something you could start with:
http://devcentral.f5.com/wiki/default.aspx/iRules/ClientCertificateCNChecking.html
You could add logic to one of those examples, which after validating the client cert, adds the client's ssl ssession ID to the session table:
http://devcentral.f5.com/wiki/default.aspx/iRules/session
That way you could support SSL session resumption in the client SSL profile and only check the cert once per session.
Aaron