Forum Discussion
Christopher_Hep
Nimbostratus
Dec 26, 2006Redirect based on OCSP Denied
I need some help with a situation for which an iRule is probably required:
Configuration:
- BigIP running 9.1.1.
- Client Authentication module enabled.
- Pool with two https servers.
- SSL authentication on BigIP.
- Client authentication through OCSP responder.
Process:
- User connects to VIP on BigIP.
- BigIP checks user revocation status through an OCSP responder.
- If responder test passes, BigIP connected client to balanced pool.
- If responder test fails, an http message send to user, who sees a default generic failure page.
Issue:
- The customer needs a custom page presented to user stating that the reason they did not get the requested page was due to authentication failure.
Question:
- How do I direct the traffic between the user and the pool based on a conversation between the BigIP and the OCSP responder?
Thanks - Chris
1 Reply
- Deb_Allen_18Historic F5 AccountHi Chris -
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects