Forum Discussion
J_T__47709
Nimbostratus
Apr 16, 2008Problem with SSL termination on LTM...
I couldn't configure LTM to balance https traffic to different pools (same target servers but different ports), depending on client IP address (using iRule), so I tried another approach...SSL termination on LTM.
For test purposes I created dummy SSL certificate on LTM and clientSSL profile for my certificate/key combination...configured VS to use that clientSSL profile and...
Everything was working fine (decrypting client packets and sending them in clear text to target server and encrypting clear text responses before returning them to client) WHILE I had only one member in the pool. If I tried to add another member in the pool, packets would continue to go to the 1st member like nothing happened.
I even tried to disable 1st member but than I didn't get any response (nothing was going to 2nd member in the pool).
After I removed 1st member from the pool and left only 2nd member everything was working fine again.
Does anybody know what should I do to solve this problem?
Thanks.
J.T.
- The_Bhattman
Nimbostratus
I had the same issue. I had to change the state in the member properties to only active accontions are allowed on top of the disable because of persistance was enabed. - hoolio
Cirrostratus
- Deb_Allen_18Historic F5 AccountJ.T.: You should be able to LB both ways using your iRule (with or without SSL termination).
- J_T__47709
Nimbostratus
Thank you all for all your suggestions and help. - Deb_Allen_18Historic F5 Account
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects