Forum Discussion
Redirect to pool to bypass SSL offloading for Exchange Hybrid setup - syntax issue(s)
Just wanted to add that it's possible to use a mixture of SSL Bridging and SSL Offloading using two Exchange iApps and an iRule with the "virtual" command. Maintain your original SSL Offload Exchange iApp and create a second iApp with a dummy VIP that does the reverse (converts exchange SSL 443 services to unencrypted port 80). Amazingly, the Exchange iApp supports this unusual "Reverse SSL Offloading" setup by allowing you to select "Unencrypted" and then "SSL-Bridging" deployment options. For Hybrid Exchange, you only need EWS and Autodiscover services exposed to port 80 on a dummy (unreachable) IP address. Now add an iRule to the original iApp that diverts all requests for "/EWS/mrsproxy.svc" to the virtual server created by the "Reverse SSL Offloading" iApp. This also allows you to easily configure a separate pool of servers for mailbox migration tasks. This was the simplest and most efficient technique I could find to support Hybrid Exchange.
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com