Forum Discussion
port forwarding on SSL pass through VIP
Hello,
Can you please assist to configure Standard SSL VIP where i need to transfer any request which is coming to SSL port to port 8443, my servers are configured with port 8443. VIP is SSL pass through (No SSL offload on F5). I need to configure source address persistence also for this VIP.
Does this configuration work:
Pool members with port 8443 VIP with SSL (443 ) Under Resources : pool members with 8443 as default pool
Thanks,
1 Reply
- Kevin_Stewart
Employee
SSL tunneling (no SSL offload) simply requires that you not assign a client and/or server SSL profile to the VIP, and that you not apply any layer 7 protocol profiles to the VIP as well (ie. HTTP). Address and port translation are layer 4 functions. So in your case, you simply need a pool of servers listening on any port (port translation is default enabled), a VIP listening on port 8443, and a generic source address persistence profile applied.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com