Forum Discussion
SSL authentication bypass on XC cloud F5
We have managed engine agent-based application which run over https protocol, every agent has unique self-signed certificate. Normally when connection is got initiated at that time agent certificate is gets authenticate with SSL certificate and connection is successfully established but when we onboarded this on F5 WAF with SSL certificate it is giving 403 http error code, so as per analysis we are getting 403 error code dues to authentication failure.
So, is there any possibility to bypass SSL authentication on F5 XC WAF?
- zamroni777Nacreous
you can try this guide.
Securing Applications using mTLS Supported by F5 Distributed Cloud
it puts information from the client certificate into http custom header.
so your app server will need modification to read the header.
- ab7Nimbostratus
the query is for Cloud F5 XC WAF
If you are doing a decryption on the F5 XC HTTP LB the XC WAF will not block you because of an SSL cert. Maybe review better the reason for the issue.
You can bypass the WAF also in service policies with more granularity like source IP , HTTP Header and bgp ASN:
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com