Forum Discussion
Help with SNI for multiple VIPs hosted on same server
i suggest simply use the gui instead of tmsh cli.
you can see much more relevant config items in the gui.
f5 bigip is very application layer oriented, not network layer ones like cisco routers.
I'm doing it through the GUI as well. I'm following these two articles the same as i set it up for two other applications. This one is just kind of different because all of the apps on the server have their own FQDN pointed to a different IP address so there really isn't the standard need for SNI. Maybe if i just remove the SSL profiles all together and let it passthrough and the server handle the routing?
https://my.f5.com/manage/s/article/K39408450
- zamroni777Aug 07, 2024Nacreous
yes, you dont need sni setting in the client side ssl profile.
however, it is still better to do client side ssl termination in f5
so f5 can do http layer optimization such as httpv2/v3, compression offload, caching, etc.
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com