Forum Discussion
F5 TCP Proxy mode
Hi all,
I am trying to mimic some settings from HAProxy and migrate them to F5.
In HAProxy we have what is called TCP proxy mode where HAProxy doesn't terminate SSL connection but just connects the client directly to the backend servers.
That config looks like this:
Hi igor_,
if you don't need SSL Offloading, iRules, HTTP profiles, L7-based persistence - why not use the Virtual Server type Performance (Layer 4) instead of type Standard?
Read:
- K01155812: Overview of the Performance (Layer 4) virtual server and
- K09948701: Overview of the FastL4 profile
Specially this "Using the FastL4 profile can increase virtual server performance and throughput for supported platforms by using the embedded Packet Velocity Acceleration (ePVA) chip to accelerate traffic." makes it a good choice for pure L4 loadbalancing.
KR
Daniel
- zamroni777Nacreous
you simply don't assign http and ssl profiles to the virtual server.
- SarahCirrus
Hi igor_ ,
Exactly as what zamroni777 mentioned, in F5 this is called SSL passthrough.
Explained more in below KB articles:
https://my.f5.com/manage/s/article/K65271370
https://my.f5.com/manage/s/article/K14343463
Hi igor_,
if you don't need SSL Offloading, iRules, HTTP profiles, L7-based persistence - why not use the Virtual Server type Performance (Layer 4) instead of type Standard?
Read:
- K01155812: Overview of the Performance (Layer 4) virtual server and
- K09948701: Overview of the FastL4 profile
Specially this "Using the FastL4 profile can increase virtual server performance and throughput for supported platforms by using the embedded Packet Velocity Acceleration (ePVA) chip to accelerate traffic." makes it a good choice for pure L4 loadbalancing.
KR
Daniel
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com