Forum Discussion
Akash_549
Jul 26, 2012Nimbostratus
SSL passthrough
- santosh_81454NimbostratusHi Akash,
- What_Lies_Bene1CirrostratusSantosh is correct. The 'passthrough' just refers to the fact the SSL is passed through the device to the servers, not terminated on the F5. Note that this means you cannot apply iRules, compression and a host of other features and you also lose some flexibility with persistence. In my experience, it's normally worth the time to terminate on the F5 and re-encrypt to the server (if it must be SSL end to end) so you get all of the benefits of LTM but maintain your security.
- Mike_MaherNimbostratusI don't think you want SSL passthrough, my understanding of that is to be able to pass the ssl handshake down to the web servers, but still maintain decryption at the Big-IP for purposes of inspection like with ASM.
- What_Lies_Bene1CirrostratusMike, I may be wrong but I think you're describing ProxySSL, not SSL passthrough.
- Mike_MaherNimbostratusSo I did, sorry about the confusion
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects