Forum Discussion

kridsana_52318's avatar
kridsana_52318
Icon for Nimbostratus rankNimbostratus
Sep 27, 2013

SSL Offload with Authentication

Hi

 

I have some problem with SSL offload. I using with VS_80 + pool_80 properly.

 

One day I tried to change into VS_443 + Client ssl profile + pool_80 and I can't log in properly. (seem using LDAP not so sure)

 

Is SSL offload have a problem with authentication page ?

 

And why when Offload, Website have this Icon Instead of this

 

Thank you

 

2 Replies

  • POST /lms_cpf/login_ldap_2.jsp HTTP/1.1

     

    Accept: text/html, application/xhtml+xml, /

     

    Referer: https://authen.example.com///

     

    Accept-Language: en-US

     

    User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)

     

    Content-Type: application/x-www-form-urlencoded

     

    Accept-Encoding: gzip, deflate

     

    Host: authen.example.com

     

    Content-Length: 140

     

    Connection: Keep-Alive

     

    Cache-Control: no-cache

     

    Cookie: JSESSIONID=A7F1A77AAD79996CEB4008726F9D86D5

     

    login=kridsana&password=12345&Submit=%3CIMG+src%3D%22images%2Flogin_btn.jpg

     

    %22%3E&starttime=Thu+Sep+27+15%3A17%3A53+UTC%2B0700+2013

     

    HTTP/1.1 200 OK

     

    Cache-Control: no-cache

     

    Pragma: no-cache

     

    textContent-Length: 222

     

    Content-Type: text/html;charset=TIS-620

     

    Server: Microsoft-IIS/7.5

     

    X-AspNet-Version: 2.0.50727

     

    X-Powered-By: ASP.NET

     

    Date: Thu, 26 Sep 2013 08:17:54 GMT

     

    Kridsana

     

    Kaewkong

     

    . .. .. .. .

     

    If using chrome it's can login but have some annoying java alert

     

    If using firefox it's block but if disable block It's can login

     

    If using IE9 It's stop here , show only "Kridsana Kaewkong" and do nothing.

     

  • Hamish's avatar
    Hamish
    Icon for Cirrocumulus rankCirrocumulus

    That (icon) looks like a certificate that isn't trusted. Do you need to add the chain certificate (assuming this is a CA signed cert)

     

    H