Neihls_298286
Oct 11, 2017Nimbostratus
SSL Server Profile - Always Send Null Session ID in Client Hello
I have a VirtualServer accepting TCP connections, with a server-side TLS connection to a media pool member. I'd like the F5 to send TLS Client Hello with a Null Session ID every time it tries to open a new server-side connection. Instead, it often offers an old SSL session id and my server sometimes simply sends TCP FIN if it doesn't recognize the SSL Session ID from the Client Hello.
If this were a Client SSL Profile, I could use the option "No session resumption on renegotiation". I can't find a similar option for the SSL Server Profile.
Any ideas?