Forum Discussion
How build a proxy like setup using BIG-IP
Hi Fabou,
You can configure the Big IP to be an explicit proxy and perform SSL inspection via LTM. This means that the client SSL terminates on the Big IP and and "airgap" is created between the SSL of the client and the end server, since the Big IP will create another SSL connection to the external site. I recommend however that you do this in conjunction with the SWG (Secure Web Gateway) URL DB so not to inspect clients private information (financial, health etc.).
F5 has thorough documentation on how to set this up here.
https://www.f5.com/pdf/deployment-guides/ssl-intercept-dg.pdf
- Fabou_139732Apr 21, 2016
Nimbostratus
Thanks for your answer. I will keep this in mind. Also please note that my case client to F5 is HTTP then I want F5 to servers be HTTPS.
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com