cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
454
Views
5
Helpful
3
Replies

ACE SSL Termination

pittchuck
Level 1
Level 1

I have setup SSL termination on the ACE.

The client is prompt for the certificate, but when client accepts the certificate the web page is not displayed.

I look at the connection table (sh conn) and it shows that it is talking to the real server(s) on port 443, not 80.

It is my understanding with SSL termination, all of the encryption and decryption is done on the ACE, the backend to the server(s) is in clear text (http, not https).

Why do I see 443 in the connection table to the real server(s)?

3 Replies 3

Gilles Dufour
Cisco Employee
Cisco Employee

what ACE software version do you have ?

Can we have a look at your config.

Gilles.

ACE version - 3.0(0)A1(2)

IOS version - 12.2.(18)SXF4

See attached config.

you need to specify the rserver port to be 80 in your serverfarm.

Something like this :

serverfarm host Test_SFARM

rserver Test1 80

inservice

rserver Test2 80

inservice

Gilles.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: