Forum Discussion
Cookie persistency on https port
Yes, any client SSL profile applied to the VIP will provide SSL offload. This is the profile that you select in the "SSL Profile (Client)" section. Keep in mind a few things:
-
Once SSL is offloaded with the client SSL profile, the traffic is unencrypted. You can send that directly to your server pool on port 80 HTTP, or if necessary you can re-encrypt with a server SSL profile.
-
The client SSL profile is now the SSL server to the client. You'll want to export the application server's certificate and private key to the F5 and use those in a new client SSL profile. The built-in clientssl profile has a generic localhost.localdomain server certificate that will cause browsers to throw up a security warning.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com