Forum Discussion
F5 requires certificates for other URI paths
Can I assume that your cURL script is external to the F5 and it's hitting the one VIP (https://collector.api.devabcdcentral.com) with different URIs? As others have stated, SSL happens BEFORE HTTP, so there's really no way to enable/disable client side SSL based on the HTTP request URI. There are a few options though:
-
Move your health check to the F5 with an external monitor. The F5 can issue the health checks and report its findings, and/or control the availability of pool members.
-
Create TWO VIPS: one for HTTP and one for HTTPS, and a set of iRules that filters on the HTTP requests. Only allow requests to /collector/health on the HTTP VIP and redirect everything else to the HTTPS VIP.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com