Forum Discussion
Persistence profile with non-http traffic, zscaler, and SSL Passthrough
I found this in another forum post, perhaps this is the right answer?
when CLIENT_ACCEPTED {
set client_remote "[IP::client_addr]:[TCP::client_port]"
persist hash ($client_remote) 300
log local0. "Connection: Client($client_remote)"
}
- Amine_KadimiOct 06, 2023MVP
I think this iRule doesn't guarantee the same client to persist on the same server, but the same combination of source IP and source port, so if source port changed then the client may go to another server.
Have you tested Configuring the BIG-IP system to pass through SSL traffic (f5.com) with Using SSL session ID persistence (f5.com)
- irbkOct 09, 2023Cirrus
As per my testing so far, once the client establishes a connection to the server, it seems to stay on the same port.
As for the provided link, I believe I did mention in the original post that I have to use "Performace (Layer 4)" and just use SSL Passthrough.
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com