Forum Discussion
InfoSec_38553
Nimbostratus
Jan 16, 2011What I should use HTTP or HTTPS in policies?
hello,
I just start working with ASM and there is some details confusing me I hope you help me with that.
In Application-Ready Security Policies there is two type of template HTTP and HTTPS.
What is the different between these policies?
If I was using https and decrypt the data in LTM then sent to ASM decrypted in this case, what I should use
HTTP or HTTPS?
Thank you in advance.
3 Replies
- Ido_Breger_3805Historic F5 AccountHi,
You should use HTTPS in this case.
Cheers,
Ido - hoolio
Cirrostratus
As Ido says, you'll want to set the protocol to what the virtual server is using on the client side.
Aaron - InfoSec_38553
Nimbostratus
Thank you all,
I just need more details.
I decided to build the policy in manual (from scratch) and my web site using HTTP and HTTPS together.
Do I need the protocol only when I set the URLs in my policy or I should have two versions one for HTTP and the other for HTTPS?
I think one version is Enough, but to make sure.
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects