Forum Discussion
re-encrypt with different cipher on server-ssl profile?
Is it possible to set a client ssl profile to cipher with diffie-helman and re-encrypt on the server ssl side to RSA? I presume this would be taxing on the device, but I need to understand the ins and outs of it.
- Al_7443Nimbostratus
Yes, it's supported. The LTM decrypts and re-encrypts traffic anyway so there is no huge difference in doing this. If you only have RSA in the suites accepted by your back-end server then the LTM will do it automatically. If not, create a server SSL profile with custom ciphers.
- Samir_Jha_52506Noctilucent
Yes, You can make it. Only thing you need to create two profile(client-SSL and Server-SSL) to solve issue. Allow the cipher as per requirement and test it in non-prod device.
Hope it will work for you.
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com