Forum Discussion
Eldad_162351
May 25, 2015Nimbostratus
F5 HTTPS Transparent to Forward Proxy Encapsulator
Hello,
My setup includes legacy clients sending https requests but cannot set their https proxy.
f5 is a transparent proxy and the goal is to dynamically forward their traffic to an externa...
nitass
Jun 04, 2015Employee
iv'e placed the node at the end of the CLIENT_ACCEPTED but most time on the first session it's not working. only after a refresh it. any idea how to optimize the irule or place the node somewhere else...?
is table record for client existing on the first session? can you check what table lookup returns on the first session?
- Eldad_162351Jun 04, 2015Nimbostratusthe table record exists and the variables are ok when i print them at CLIENT_ACCEPTED. where would you place the node $destip $destport?
- nitassJun 04, 2015Employeei do not use node command because all traffic will be sent to pool (web proxy pool) that is assigned to virtual server. does it work if you send all traffic to web proxy pool (i.e. not looking up web proxy node from table)?
- Eldad_162351Jun 04, 2015Nimbostratusyes it works fine. in this case i cannot use the pool because the table records keep updating all the time by an sideband call to different i rule from a different virtual server. so actually the nodes are dynamic and changing from time to time...
- nitassJun 04, 2015Employeeif virtual server's pool works, node command should work too. can you try to move TCP::collect 0 0 to be after node command (i.e. use node command before TCP::collect 0 0)?
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects