Forum Discussion
Leveraging SSL connections between BIG IP LTM and backend servers
Hi Team,
I have a scenario, wherein the SSL worker threads on the backend servers are being exhausted while processing all the SSL requests between BIG-LTM and the backend servers.
I'm looking at some options/settings on BIGIP which can leverage already open SSL connections with backend servers so as to not bombard the backend servers with too many SSL handshake requests.
I see OneConnect profile can leverage the already existing idle connections between LTM and backend server but not sure if it can used for leveraging open SSL connections as well. The idea is to reduce the number of encryption/decryption mechanism on the backend server.
Can anyone provide their expertise to achieve this.
BR, MSK
- Arnaud_LemaireEmployee
Hi, Oneconnect is the key, otherwise you can play with caching for http content. As an addition depending on you server behavior when overloaded by ssl connection , you can apply some limit on the maximum number of connections allowed by member.
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com