Forum Discussion
secure traffic between webservers and f5
I am looking into what options we have in securing the traffic between the f5 ltm and webservers? Currently we have encrypted traffic between client and and ltm (client side ssl). I know server side ssl is one way to do this.
2 Replies
- Vijay_E
Cirrus
Serverside SSL is the best possible option. You can also explore VPN of some kind but it will get too complicated and consume too much resources on the F5 and on the servers.
Normally an F5 device is close to the servers and are passing traffic to the servers within a hop or on L2 over dedicated switch/router and hence, VPN is an overkill, in my opinion.
- IainThomson85_1
Cumulonimbus
As others have said, and you've suggested - Serverside SSL - Of course depending on your environment/requirements this could be as simple as a Self Signed certificate or having a full blown CA chain.
Also might be worth fiddling around with Negotiation options, ciphers etc. Depending how in depth you need/want to go.
Regards,
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com