Forum Discussion
Jim_Grundy_4363
Nimbostratus
Apr 04, 2011HTTPS redirect
I am trying to do a redirect, if the end user types in https://mywebsite.com I want to redirect to https://www.mywebsite.com before the SSL handshake happens. Does anyone know if this is possible?
3 Replies
- Ed_Hammond_2611
Nimbostratus
You can't see the HTTP data when it is encrypted, so you can get there. You must decrypt it. Sorry! - DeVon_Jarvis
Altostratus
You mentioned that you want to redirect BEFORE the SSL handshake occurs. Since the client is requesting an SSL connection, it will not pass any data until this connection is established. So, no, it is not possible to redirect before the SSL handshake, AFAIK.
As Ed said, you can terminate the SSL connection using a clinet-side SSL profile. Then in an iRule, you can redirect based in your condition.
Hope this helps to direct your efforts!
DeVon - Colin_Walker_12Historic F5 AccountThis is a pretty classic chicken & egg question we get asked a lot. Maybe we should write this up more clearly/prominently so people can find it more easily?
Both above posters are correct, unfortunately. You can't access encrypted data until it's unencrypted on the LTM. It can't be unencrypted (since no traffic passes at all) until the handshake occurs. So you're kind of stuck.
Colin
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects