For more information regarding the security incident at F5, the actions we are taking to address it, and our ongoing efforts to protect our customers, click here.

Forum Discussion

Antony2015's avatar
Antony2015
Icon for Altostratus rankAltostratus
Jun 25, 2014

If the F5 LTM VIP does the redirect (https to https), does the cookie information associated with the original URL get passed to the redirected URL?

If the F5 LTM VIP does the redirect (https to https), does the cookie information associated with the original URL get passed to the redirected URL?

 

1 Reply

  • Yes. Cookie scope is dependent on the host name only, not the protocol scheme. The only thing that can trip you up is the secure flag in a Set-Cookie header. This would prevent cookies sent in an HTTPS response from being used in an HTTP request.