cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
551
Views
0
Helpful
3
Replies

Can ACE encrypts cookies?

ncfb-awarsame
Level 1
Level 1

I just implemented ACE 4710, A3(2.4) in our network. It is doing loadbalancing with ssl termination. I configured stickiness using server cookies.  My client is telling me cookie is sent in clear text on the Inernet.  Is there a way on ACE to encrypt it?

your help is greately appreciated.

1 Accepted Solution

Accepted Solutions

Gilles Dufour
Cisco Employee
Cisco Employee

This is just not possible.

The cookie is part of the http header and the complete http data (header + content) is encrypted in the same SSL connection.

So not possible.

Have your customer send you the sniffer trace showing the problem.

Gilles.

View solution in original post

3 Replies 3

Gilles Dufour
Cisco Employee
Cisco Employee

This is just not possible.

The cookie is part of the http header and the complete http data (header + content) is encrypted in the same SSL connection.

So not possible.

Have your customer send you the sniffer trace showing the problem.

Gilles.

Thank you.  That was also my thinking.

I'll ask them to give a sninffer trace.

gdufuor,


a part of my question was not right. Stickiness cookie is created by ACE. ACE is inserting the cookie.  Does it make any diffirrence?

thank you.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: