Forum Discussion
Brian_DeKemper_
Nimbostratus
Feb 03, 2007HTTPS to HTTP redirect
This one is a little different, but I'm trying to redirect traffic on a 443-Virtual Server over to a port 80 Virtual Server.
I have an 'HTTP to HTTPS redirect' iRule, but I'm in a situation ...
Jeff_Mattson_44
Nimbostratus
Feb 05, 2007Assuming you need both virtuals, and not just a simple SSL termination, this might help.
From what I've gleaned from the forum, to pass traffic from one virtual server to another, you need to create a loopback to the F5. The network cabling needs to allow for the following:
VS1 is on a external vlan
VS2 is on a dmz vlan
DEST is on an internal vlan
VS1 accepts and terminates ssl using an ssl profile, then passes traffic to VS2 on port80, via a pool containing VS2's ip.
That traffic goes out the dmz vlan port, but needs to come in on another vlan (either internal or external).
VS2 is listening for requests from all vlans (or the one you link to above).
VS2 then sends to DEST via its pool or irule, etc.
If you have the ports free, you can connect two of them directly, and assign one to a dmz vlan and the other to the internal vlan. (Don't put them both in the same vlan as it will create a broadcast storm). If you don't have the free ports, you'll have to play with your switching fabric to get the loop.
Jeff
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects