cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
489
Views
0
Helpful
3
Replies

CSS 11800 with SCA for SSL offloading with transparecy to WEB serwers

awo
Level 1
Level 1

I got 2 boxes of CSS11800 for redundancy.

Got SCA for offloading SSL procesing from Web Servers.

There is need that WebServer will always can see in logs

origin IP addresses of clients so it should be configured as Transparent.

There is example in SCA documentation for One-port Transparent configuration but it dont work for me. Can any body share here some example ? or maybe know why.. TCP syn with VIP:443 backing (sniffing) with

:81 src port istead of :443 ?

3 Replies 3

ahojmark
Level 1
Level 1

The one-armed transparent config isn't exactly straigt-forward, especially if it involves server-initiated traffic. I would suggest, you contact your account team for a discussion of how to set this up as it really is complex to discuss in this media.

Regards,

-A

Asbjoern Hoejmark | CTO | CCIE #8525
Wingmen Solutions A/S | Gyngemose Parkvej 50, 1. | DK-2860 Søborg | Denmark
M: +4525162108 | E: ah@wingmen.dk | W: www.wingmen.dk

Could you drop me an email ? I will have some questions for you but the forums is no so usefull for that communication.

This solution need only support traffics from users to webserver

w/o need that server will do any SYN to client...

kpburns
Level 1
Level 1

YES.. why does the config for the CSS in the SCA manual have the upstream router configured as a transparent-cache ?

K