Forum Discussion
Rob_78395
Nimbostratus
Jan 28, 2013Identify and pass-through HTTPS using iRules
I am using a single IP to proxy many different domains. I have a VS on this IP for HTTP traffic and no default pool set becasue I'm using this iRule which works great:
when HTTP_REQUEST {...
What_Lies_Bene1
Cirrostratus
Jan 28, 2013Rob, I'm pretty sure the client does not specify a domain when using SSL or TLS with the exception of in TLS1.2 if Server Name Indication (SNI) is supported by the client and server. Event there, as you are not terminating the SSL/TLS can inspect the relevant record information? I'm not sure you can. You could always do some research if you think it's worthwhile and your servers and likely clients support SNI by doing some testing and using tcpdump to capture some traffic.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects