Forum Discussion
SNAT / X-FORWARD-FOR breaks HTTPS connection
- Dec 14, 2020
SSL Passthrough is FastL4 setup.
SSL Offload or SSL Offload and Re-Encrypt or in other terms, SSL Bridging are Standard VS setups.
SSL Passthrough cannot alter http data. You cannot perform XFF with fastl4 setup.
I would request you to follow this article to understand more about HTTP traffic.
Of course! So we have now corrected the setup to be SSL bridging and the site loads, however the X-FORWARDED-FOR still doesnt seem to work. We have run a trace with wireshark and enabled custom logging in IIS but we cannot see the X_FORWARDED-FOR header info.
We have checked our setup against https://support.f5.com/csp/article/K4816.
Any thoughts?
EDIT: I had missed enabling Custon Logging in IIS. this works as expected now
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com