Technical Forum
Ask questions. Discover Answers.
cancel
Showing results for 
Search instead for 
Did you mean: 

SSL Orchestrator separate ingress and egress devices bypass rule fail

jamesitexpert_3
Nimbostratus
Nimbostratus

Hello All

 

We deploy two SSL orchestrator devices for separate ingress(decrypt) and egress(encrypt) SSL traffic for increase visibility and performance.

 

Some application is not accept SSL termination like line,dropbox...

 

For SSL orchestrator ingress device(decrypt), i has been set up the DDB bypass rule but it not working.

 

Any idea for this issue?

 

Topology: Client --- [F5 ingress] --- IPS --- WAF --- [F5 egress] --- FW --- internet

 

Ingress Config: 0691T000006ApsoQAC.png

 

Egress Config: 0691T000006ApspQAC.png

 

1 REPLY 1

Kevin_Stewart
F5 Employee
F5 Employee

An issue is fixed in SSLO 3.0 HF5 whereby the egress box wasn't catching the policy bypass decision.