Mar 27, 2026 - For details about updated CVE-2025-53521 (BIG-IP APM vulnerability), refer to K000156741.

Forum Discussion

Brian_69413's avatar
Brian_69413
Icon for Nimbostratus rankNimbostratus
14 years ago

SSL vs Non-SSL portions of the a website

How do you folks handle SSL(protected) vs non-SSL(public) content on a website while holding persistence for authed users.

 

 

We have a site where visitors can log in to view customized content or browse as a guest and see default content.

 

 

When they get to protected pages, they need to be logged in and the site needs to switch to SSL, but the rest of the site we would like to be non-SSL.

 

 

If we have two virtuals, one for port 80 and the other for port 443, but a shared pool of servers, how would we handle keeping a user with a particular server(persistence) to keep them logged in?

 

 

Lots of e-commerce sites do this, and I hope it does not have to be by replicating session data between servers...

 

6 Replies

No RepliesBe the first to reply