Forum Discussion
ramesh_110176
Nimbostratus
Jun 01, 2009iRule SSL passthrough
Hi  
       
     I would like incoming SSL connection to terminate on the webserver, instead of the LTM.  
       
     I have the below irule:  
       
     when HTTP_REQUEST {  
       SSL::disabl...
Jan_V_48538
Nimbostratus
Jun 12, 2009I am trying to get my godaddy cert to work on our bigip but am getting errors. 
For instance, when I run the following command behind the firewall to our nginx app server it works perfectly
openssl s_client -connect g1-stage.ngmoco.com:443 -state -debug
However, then I point the same command to the external BigIP URL it craps out.
24209:error:140770FC:SSL routines:SSL23_GET_SERVER_HELLO:unknown protocol:s23_clnt.c:583:
with that error when I have the http/ssl profiles disabled--this would mean it should do a pass through but is apparently failing somewhere. If I turn the SSL client/server profiles back on it fails with a handshake error. Does anyone know where there are details virtual server setup instructions for either dealing with SSL on the F5 or passing it straight through. Nothing I have read here is working for me.
Jan
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects