Forum Discussion
Virtual Server 443 for pool members running 443 & ssl certificate
Hi,
We have a requirement to do load balancing for webseal servers running 443 & ssl certificate. We want to configure a virtual server with 443 port to do load balance traffic between webseal server on port 443 without ssl offload on F5. We tried with standard Virtual Server but it didn't work.
1 Reply
- Kevin_Stewart
Employee
Load balancing to SSL servers without SSL offload basically requires a basic layer 4 VIP, no client or server SSL profiles, no layer 7 (ie. http, ftp, etc.) profiles, and a pool that sends traffic to the nodes listening on 443. This is pure layer 4 (TCP) "tunneling" of SSL and above data. I would add too that this sort of configuration severely diminishes the F5's capabilities. Without access to the upper layer protocol data, you've basically turned it into a simple IP-based load balancer with minimal functionality. Even persistence is limited to source address.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
