Forum Discussion
PK_Bhatia
Nimbostratus
May 31, 2017pain text connection between client and node
I have a situation where i have ssl client configured on VS listening on 443, pool members are listening on 9001. Everything works except it seems that connection between a user and node member seems...
dragonflymr
Cirrostratus
May 31, 2017Hi,
Have you SNAT enabled on your VS? If not client IP is passed to backend server so you can be under impression that you see direct client to node session. If this is the case then your nodes have default gateway pointing to internal VLAN self IP on F5 as well.
It is not the case. For Standard VS with SSL Offload you have alway two separate session:
- Client to F5 (encrypted in this case)
- F5 to node (unencrypted in this case)
Piotr
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects
