<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Cisco 11500 SSL redirection in Application Networking</title>
    <link>https://community.cisco.com/t5/application-networking/cisco-11500-ssl-redirection/m-p/1751718#M34870</link>
    <description>&lt;P&gt;I'm attempting to redirect SSL from the base site to a different page on the same SSL site.&amp;nbsp; I want to redirect &lt;A href="https://10.4.16.54/*"&gt;https://10.4.16.54/*&lt;/A&gt; to &lt;A href="https://10.4.16.54/AHC/SitePages/Home.aspx"&gt;https://10.4.16.54/AHC/SitePages/Home.aspx&lt;/A&gt;.&amp;nbsp; If I enter &lt;A href="https://10.4.16.54/AHC/SitePages/Home.aspx"&gt;https://10.4.16.54/AHC/SitePages/Home.aspx&lt;/A&gt;, site loads, but if I enter simply &lt;A href="https://10.4.16.54/"&gt;https://10.4.16.54&lt;/A&gt;, it times out.&amp;nbsp; The ssl_sharepoint service is my ssl_proxy_list.&amp;nbsp; Thanks for any help.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; content Sharepoint_https &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; flow-timeout-multiplier 10 &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; sticky-inact-timeout 35 &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; vip address 10.4.16.54 &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; application ssl &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; add service ssl_sharepoint&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; advanced-balance ssl &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; url "/*" &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; port 443 &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; protocol tcp &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; redirect "/AHC/SitePages/Home.aspx"&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; active &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; content Sharepoint_https_redirect &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; vip address 10.4.16.54 &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; application ssl &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; advanced-balance ssl &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; flow-timeout-multiplier 10 &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; sticky-inact-timeout 35 &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; add service ssl_sharepoint&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; port 443 &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; protocol tcp &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; url "/AHC/SitePages/Home.aspx" &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; active &lt;/P&gt;</description>
    <pubDate>Thu, 25 Aug 2011 18:32:32 GMT</pubDate>
    <dc:creator>gary.bennett</dc:creator>
    <dc:date>2011-08-25T18:32:32Z</dc:date>
    <item>
      <title>Cisco 11500 SSL redirection</title>
      <link>https://community.cisco.com/t5/application-networking/cisco-11500-ssl-redirection/m-p/1751718#M34870</link>
      <description>&lt;P&gt;I'm attempting to redirect SSL from the base site to a different page on the same SSL site.&amp;nbsp; I want to redirect &lt;A href="https://10.4.16.54/*"&gt;https://10.4.16.54/*&lt;/A&gt; to &lt;A href="https://10.4.16.54/AHC/SitePages/Home.aspx"&gt;https://10.4.16.54/AHC/SitePages/Home.aspx&lt;/A&gt;.&amp;nbsp; If I enter &lt;A href="https://10.4.16.54/AHC/SitePages/Home.aspx"&gt;https://10.4.16.54/AHC/SitePages/Home.aspx&lt;/A&gt;, site loads, but if I enter simply &lt;A href="https://10.4.16.54/"&gt;https://10.4.16.54&lt;/A&gt;, it times out.&amp;nbsp; The ssl_sharepoint service is my ssl_proxy_list.&amp;nbsp; Thanks for any help.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; content Sharepoint_https &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; flow-timeout-multiplier 10 &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; sticky-inact-timeout 35 &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; vip address 10.4.16.54 &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; application ssl &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; add service ssl_sharepoint&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; advanced-balance ssl &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; url "/*" &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; port 443 &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; protocol tcp &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; redirect "/AHC/SitePages/Home.aspx"&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; active &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; content Sharepoint_https_redirect &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; vip address 10.4.16.54 &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; application ssl &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; advanced-balance ssl &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; flow-timeout-multiplier 10 &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; sticky-inact-timeout 35 &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; add service ssl_sharepoint&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; port 443 &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; protocol tcp &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; url "/AHC/SitePages/Home.aspx" &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; active &lt;/P&gt;</description>
      <pubDate>Thu, 25 Aug 2011 18:32:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/cisco-11500-ssl-redirection/m-p/1751718#M34870</guid>
      <dc:creator>gary.bennett</dc:creator>
      <dc:date>2011-08-25T18:32:32Z</dc:date>
    </item>
    <item>
      <title>Cisco 11500 SSL redirection</title>
      <link>https://community.cisco.com/t5/application-networking/cisco-11500-ssl-redirection/m-p/1751719#M34871</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Gary,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;First off I'll recommend you to clean up the URL and redirect command from your 443 rules, as 443 is encrypted the CSS is not able to look at layer 5 info within the traffic, making this commands useless for these rules.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;That being said; since you're using SSL termination your configuration for HTTPS-to-HTTPS redirect would look like this:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; content Sharepoint_https&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; vip address 10.4.16.54 &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; application ssl &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; advanced-balance ssl &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; flow-timeout-multiplier 10 &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; add service ssl_sharepoint&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; port 443 &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; protocol tcp &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; active &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; content Sharepoint_https_redirect&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; vip address 10.4.16.54&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; port 80&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; protocol tcp&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; url "/*"&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; redirect "&lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="https://10.4.16.54/AHC/SitePages/Home.aspx"&gt;https://10.4.16.54/AHC/SitePages/Home.aspx&lt;/A&gt;&lt;SPAN&gt;"&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; active&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; content Sharepoint_http_Aspx&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; vip address 10.4.16.54&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; port 80&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; advance-balance arrowpoint-cookie&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; add service Sharepoint-1&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; add service Sharepoint-2&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; protocol tcp&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; url "/AHC/SitePages/Home.aspx"&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; active&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here I'm assuming that you're not using backend SSL and your clear port is 80 &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Basically, traffic comes as &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="https://10.4.16.54"&gt;https://10.4.16.54&lt;/A&gt;&lt;SPAN&gt;, hits the encrypted rule that send the traffic to the SSL proxy list for decryption, once decrypted traffic is sent to the clear text content rule, since there's no URI the request matches the rule with the wildcard URL "/*". This rule performs a redirect an indicates to the client to come back this time with the URI described ... process starts all over but this time the request will match the second clear text rule as the URI is more specific. &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;__ __&lt;/P&gt;&lt;P&gt;Pablo&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 25 Aug 2011 22:44:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/cisco-11500-ssl-redirection/m-p/1751719#M34871</guid>
      <dc:creator>pablo.nxh</dc:creator>
      <dc:date>2011-08-25T22:44:58Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco 11500 SSL redirection</title>
      <link>https://community.cisco.com/t5/application-networking/cisco-11500-ssl-redirection/m-p/1751720#M34872</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks much for the code and clarification, Pablo.  Exactly what I was trying to accomplish.  Thanks, again.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;gary&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 26 Aug 2011 00:01:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/cisco-11500-ssl-redirection/m-p/1751720#M34872</guid>
      <dc:creator>gary.bennett</dc:creator>
      <dc:date>2011-08-26T00:01:29Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco 11500 SSL redirection</title>
      <link>https://community.cisco.com/t5/application-networking/cisco-11500-ssl-redirection/m-p/1751721#M34873</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Gary,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Glad to be of help &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;__ __&lt;/P&gt;&lt;P&gt;Pablo&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 26 Aug 2011 01:52:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/cisco-11500-ssl-redirection/m-p/1751721#M34873</guid>
      <dc:creator>pablo.nxh</dc:creator>
      <dc:date>2011-08-26T01:52:07Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco 11500 SSL redirection</title>
      <link>https://community.cisco.com/t5/application-networking/cisco-11500-ssl-redirection/m-p/1751722#M34874</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;One more question.  The redirect works great for sharepoint links that explicitly end w/the “Home.aspx”.  However, if the underlying link stops w/the directory only, it fails on the content switch, redirecting to the initial home page.  If you access the same URL on the server directly, it adds the “Home.aspx” correctly.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do I need to do a remapping or a different redirect?  Any suggestions w/b greatly appreciated.  Thanks.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;gary&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 26 Aug 2011 13:42:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/cisco-11500-ssl-redirection/m-p/1751722#M34874</guid>
      <dc:creator>gary.bennett</dc:creator>
      <dc:date>2011-08-26T13:42:35Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco 11500 SSL redirection</title>
      <link>https://community.cisco.com/t5/application-networking/cisco-11500-ssl-redirection/m-p/1751723#M34875</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Gary,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can you look within your config for all the rules with VIP 10.4.16.54 and copy/paste them here. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The 3 rules provided should be enough to redirect all the URL's regardless of the URI path.&lt;/P&gt;&lt;P&gt;__ __ &lt;/P&gt;&lt;P&gt;Pablo&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 26 Aug 2011 16:22:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/cisco-11500-ssl-redirection/m-p/1751723#M34875</guid>
      <dc:creator>pablo.nxh</dc:creator>
      <dc:date>2011-08-26T16:22:09Z</dc:date>
    </item>
  </channel>
</rss>

