For more information regarding the security incident at F5, the actions we are taking to address it, and our ongoing efforts to protect our customers, click here.

Forum Discussion

Michael_Sproul1's avatar
Michael_Sproul1
Icon for Nimbostratus rankNimbostratus
Apr 23, 2014

iRule for HTTPS pool assignment

I have iRules for an HTTP: server like

 

when HTTP_REQUEST { switch -glob [HTTP::uri] { "thegreen.domain" {pool thegreen_pool } default {pool ecmtstweb1_2_pool } } }

 

Works fine. Looking for the equivalent for an HTTPS: server.

 

4 Replies

  • You can use the same iRule, but you'll need to terminate the SSL on the BIG-IP. You can accomplish this by loading a certificate/key pair for the server that you are proxying for, apply that certificate/key pair to a client SSL profile, and then apply that client SSL profile to your virtual server.

     

    • Michael_Sproul1's avatar
      Michael_Sproul1
      Icon for Nimbostratus rankNimbostratus
      OK. Do you know how I can import the SSL certificate from the physical servers for this? Or, do I need to generate a new one for the LTM?
    • Cory_50405's avatar
      Cory_50405
      Icon for Noctilucent rankNoctilucent
      If the server administrator can provide you the cert and private key, you can go to Local Traffic -> SSL Certificate List and then click Import. If you have the individual certificate and key files, you can do it by using 'Create' instead of 'Import'