Forum Discussion
Chris_Phillips
Nimbostratus
Oct 25, 2007passing ssl cert through on de&recrypt
hi,
is there any way to relay the end server's ssl certificate to a client if we're decrpyting and the reencrypting an ssl connection? rather than having to import it into the F5 each time, i'd like to just require a cert under a serverssl profile and bounce it on to the client.
Cheers
Chris
- hoolio
Cirrostratus
I don't think there is any way to use an iRule (or iControl?) to dynamically change a client SSL profile to use the cert a server presents--particularly if you consider that the client side connection needs to be established before a server side connection is built. - Chris_Phillips
Nimbostratus
hmm, i wasn't sure at what stage the server side connection would be opened. i'm mixing this up with oneconnect stuff as well so there would be a serverside connection open usually already. not that it would have already been assigned to that incoming client connection i guess.
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects