Forum Discussion
SSL Offloading on F5 LTM
I personally don't see why not as I have a lot of customers using non standard ports for their web applications. I am curious as to why you wouldn't want to define a standard port on the virtual server as either users will need to manually define :5555 or you will need to create an iRule to redirect all requests to port 5555. As for the server side, the BIG-IP will perform any translation required to the service port of the pool members. At this point the BIG-IP is the client using ephemeral ports connecting to a static port on your web server. As long as the web server itself is listening on 5555 you should be fine. What are some of your concerns?
- Raja_MMay 24, 2018
Nimbostratus
MY concern is if we add SSL certificate on non standard port VIP 5555 will SSL offloading work or not???
- Steve_Lyons_236May 24, 2018Historic F5 Account
Yes, this will work. The virtual server will listen on the non standard port with a client SSL profile assigned. If you want to do true offloading with just HTTP to the web server then do NOT assign a server ssl profile. If you wanted to do bridging then simply assign a Server SSL profile to the virtual server.
- Raja_MMay 24, 2018
Nimbostratus
Thank you so much
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com