Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

awo
New Member

CSS 11800 with SCA for SSL offloading with transparecy to WEB serwers

I got 2 boxes of CSS11800 for redundancy.

Got SCA for offloading SSL procesing from Web Servers.

There is need that WebServer will always can see in logs

origin IP addresses of clients so it should be configured as Transparent.

There is example in SCA documentation for One-port Transparent configuration but it dont work for me. Can any body share here some example ? or maybe know why.. TCP syn with VIP:443 backing (sniffing) with

:81 src port istead of :443 ?

3 REPLIES
New Member

Re: CSS 11800 with SCA for SSL offloading with transparecy to WE

The one-armed transparent config isn't exactly straigt-forward, especially if it involves server-initiated traffic. I would suggest, you contact your account team for a discussion of how to set this up as it really is complex to discuss in this media.

Regards,

-A

awo
New Member

Re: CSS 11800 with SCA for SSL offloading with transparecy to WE

Could you drop me an email ? I will have some questions for you but the forums is no so usefull for that communication.

This solution need only support traffics from users to webserver

w/o need that server will do any SYN to client...

New Member

Re: CSS 11800 with SCA for SSL offloading with transparecy to WE

YES.. why does the config for the CSS in the SCA manual have the upstream router configured as a transparent-cache ?

K

149
Views
0
Helpful
3
Replies
CreatePlease login to create content