Post of the Week: SSL on a Virtual Server
In this Lightboard Post of the Week, I answer a few questions about SSL/https on Virtual Servers. BIG-IP being a default deny, full proxy device, it's important to configure specific ports, like 443, to accept https traffic along with client and server side profiles and include your SSL certificates. We cover things like SAN certificates but I failed to mention that self-signed certificates are bad anywhere except for testing or on the server side of the connection.
Thanks to DevCentral members, testimony, Only1masterblaster, Faruk AYDIN, MrPlastic, Tyler G, Prince, and dward for their Q/A engagement.
Posted Questions on DevCentral:
- https on virtual server
- LINKING SSL CERTIFICATE TO A VIRTUAL SERVER
- SSL CERTIFICATE KEY
- Maximum number of client SSL profiles per virtual server?
- Need to support thousands of unique SSL certificates on a single VIP
ps
Published Dec 22, 2017
Version 1.0PSilva
Ret. Employee
Joined May 16, 2019
PSilva
Ret. Employee
Joined May 16, 2019
No CommentsBe the first to comment