Forum Discussion
ramesh_110176
Nimbostratus
Jun 01, 2009iRule SSL passthrough
Hi
I would like incoming SSL connection to terminate on the webserver, instead of the LTM.
I have the below irule:
when HTTP_REQUEST {
SSL::disabl...
Jan_V_48538
Nimbostratus
Jun 12, 2009I am trying to get my godaddy cert to work on our bigip but am getting errors.
For instance, when I run the following command behind the firewall to our nginx app server it works perfectly
openssl s_client -connect g1-stage.ngmoco.com:443 -state -debug
However, then I point the same command to the external BigIP URL it craps out.
24209:error:140770FC:SSL routines:SSL23_GET_SERVER_HELLO:unknown protocol:s23_clnt.c:583:
with that error when I have the http/ssl profiles disabled--this would mean it should do a pass through but is apparently failing somewhere. If I turn the SSL client/server profiles back on it fails with a handshake error. Does anyone know where there are details virtual server setup instructions for either dealing with SSL on the F5 or passing it straight through. Nothing I have read here is working for me.
Jan
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects
