Forum Discussion
SSLi/SWG Transparent Proxy w/ Kerberos Auth
Hi Brett,
I have done a good deal of work on SSLi on a Viprion (transparent proxy, NTLM and Kerberos auth via HTTP 401, etc.). Are you performing bypass to support mutual SSL authentication (e.g. client SSL certs) or for category (financials, government, healthcare) based bypass? SWG should handle the latter (categorization) but I believe you have to have the proper licensing for this functionality.
I had some challenges getting domain based bypass to work. IP address (source and destination) worked fine. The F5 should not be establishing communications with the destination server if bypass is enabled. Where are you seeing this behavior?
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
