crypto chaingroup HBSP_CHAIN_GROUP cert ebscert.pem access-list ALL line 8 extended permit ip any any parameter-map type ssl SSL_PARAM_MAP ssl-proxy service SSL_PROXY_EBSAPP key "ebskey.pem" cert "ebscert.pem" chaingroup HBSP_CHAIN_GROUP rserver host istore-app-qa1 ip address 10.103.103.58 inservice rserver host istore-app-qa2 ip address 10.103.103.63 inservice serverfarm host istore-app-qa_serverfarm_8000 description Istore server farm at port 8000 failaction purge rserver istore-app-qa1 8000 inservice rserver istore-app-qa2 8000 inservice sticky ip-netmask 255.255.255.255 address both STICKY_ISTORE_8000 serverfarm istore-app-qa_serverfarm_8000 class-map match-any ISTORE_LB_443 2 match virtual-address 10.103.40.180 tcp eq https class-map match-any ISTORE_LB_444_web-srv_to_srv 2 match virtual-address 10.103.40.180 tcp eq https class-map match-any ISTORE_LB_8000_srv-to-srv 2 match virtual-address 10.103.40.180 tcp eq 8000 policy-map type loadbalance first-match ISTORE_LB_443-l7slb class class-default sticky-serverfarm STICKY_ISTORE_8000 policy-map type loadbalance first-match ISTORE_LB_444_web-srv_to_srv-l7slb class class-default sticky-serverfarm STICKY_ISTORE_8000 policy-map type loadbalance first-match ISTORE_LB_8000_srv-to-srv-l7slb class class-default sticky-serverfarm STICKY_ISTORE_8000 policy-map multi-match int103 class ISTORE_LB_8000_srv-to-srv loadbalance vip inservice loadbalance policy ISTORE_LB_8000_srv-to-srv-l7slb loadbalance vip icmp-reply active nat dynamic 2 vlan 103 policy-map multi-match int105 class ISTORE_LB_444_web-srv_to_srv loadbalance vip inservice loadbalance policy ISTORE_LB_444_web-srv_to_srv-l7slb loadbalance vip icmp-reply active ssl-proxy server "SSL_PROXY_EBSAPP" policy-map multi-match int40 class ISTORE_LB_443 loadbalance vip inservice loadbalance policy ISTORE_LB_443-l7slb ssl-proxy server "SSL_PROXY_EBSAPP" interface vlan 40 description "Client VLAN" ip address 10.103.40.30 255.255.255.0 access-group input ALL service-policy input remote_mgmt_allow_policy service-policy input int40 no shutdown interface vlan 103 description "Server side network" ip address 10.103.103.1 255.255.255.0 access-group input ALL nat-pool 2 10.103.103.175 10.103.103.176 netmask 255.255.255.0 pat nat-pool 3 10.103.103.177 10.103.103.177 netmask 255.255.255.0 pat service-policy input int103 no shutdown interface vlan 105 description "Web LB Network" ip address 10.103.105.1 255.255.255.0 access-group input ALL service-policy input int105 no shutdown ip route 0.0.0.0 0.0.0.0 10.103.40.1