Forum Discussion
F5 forward SSL to the server , lets encrypt.
Hello guys,
I am relatively new to the F5 , so we were wondering if there is a possibility to make things work with the lest encrypt in the following architecture:
So we have, let’s say “domain.com” with A record to x.x.x.x on F5
Virtual servers (x.x.x.x) -> pools -> node:80 (y.y.y.y ip on the server itself)
Virtual servers (x.x.x.x) -> pools -> node:443 (y.y.y.y ip on the server itself)
What we are trying to do is to set the Lets encrypt SSL on the server y.y.y.y (sense lets encrypt plugin is installed there) and not on the F5, because some of the reasons. We want to keep the F5 protection and valuable features, but move the Lets encrypt to the server.
Is there any way to achieve this?
Thank you!
- SurgeonRet. Employee
You can bypass ssl on big-ip. In this case ssl will be initiated with your back-end server directly.
If you want to do SSL offload on the big-ip, you can use REST API calls to update certificates and keys on the big-ip.
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com