Forum Discussion
Festus_50639
Nimbostratus
Mar 02, 2009GTM or LTM to redirect? That is the question.
Hello all,
I'm in a bit of a sticky wicket trying to get to the end point in solving what seems to be a fairly simple issue.
In our environment, we have both GTMs and...
hoolio
Cirrostratus
Mar 02, 2009Wildcard certs may not actually cover site.com and www.site.com. You may need to specifically request this. Subject Alternate Names should allow you to use both instances though:
http://devcentral.f5.com/Default.aspx?tabid=53&view=topic&postid=33441&ptarget=33462
For the HTTPS VIP, you're limited to supporting one certificate for one VIP. So if clients did make an HTTPS request using a hostname that didn't match the cert, they would get a cert mismatch error before you would be able to redirect them to a new location. You may be able to get a cert valid for all subdomains on your domain (a wildcard cert valid for *.example.com) or you could get a cert valid for multiple hostnames on different domains using subject alternate names (SANs). Try searching the forums here for SAN SSL or subject alternate name for some more information and links.
It would be more ideal to avoid clients making requests via HTTPS to different hostnames that resolve to the same IP address.
Aaron
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects
