<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ACE30 url redirect in Application Networking</title>
    <link>https://community.cisco.com/t5/application-networking/ace30-url-redirect/m-p/1832905#M36075</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;If you are testing with https traffic this will&amp;nbsp; not work. You are not terminating SSL so all traffic is encrypted and the ACE will not be able to match any L7 data. Can you test with http traffic, or try configuring SSL termination and test again.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;BR /&gt;Jim&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 19 Dec 2011 21:52:48 GMT</pubDate>
    <dc:creator>jsirstin</dc:creator>
    <dc:date>2011-12-19T21:52:48Z</dc:date>
    <item>
      <title>ACE30 url redirect</title>
      <link>https://community.cisco.com/t5/application-networking/ace30-url-redirect/m-p/1832900#M36070</link>
      <description>&lt;P&gt;Hi everyone,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have a problem configuring URL redirect on ACE 30 (Version A4(1.0)).&lt;/P&gt;&lt;P&gt;When a user enters IP address or a name of&amp;nbsp; a service (&lt;A href="http://aa.bb.cc"&gt;http://aa.bb.cc&lt;/A&gt; or &lt;A href="https://aa.bb.cc"&gt;https://aa.bb.cc&lt;/A&gt;), the ACE module should redirect him to the page &lt;A href="https://aa.bb.cc/logonpage"&gt;https://aa.bb.cc/logonpage&lt;/A&gt;. Here is my non-working config:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;access-list OUTSIDE line 8 extended permit tcp any any eq https &lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;access-list OUTSIDE line 16 extended permit tcp any any eq www &lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;access-list OUTSIDE line 24 extended permit icmp any any &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;probe http Test_HTTP_1&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; port 80&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; interval 60&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; passdetect interval 30&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; passdetect count 2&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; request method head url /index.html&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; expect status 200 200&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; open 1&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;rserver redirect URL_Redirect_01&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; webhost-redirection &lt;A href="https://aa.bb.cc/logonpage"&gt;https://aa.bb.cc/logonpage&lt;/A&gt; 302&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; inservice&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;rserver host S1&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; ip address 10.0.0.2&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; inservice&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;rserver host S2&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; ip address 10.0.0.3&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; inservice&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;rserver host S3&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; ip address 10.0.0.4&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; inservice&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;serverfarm redirect URL_Redirect_Farm&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; rserver URL_Redirect_01&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; inservice&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;serverfarm host SF1&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; probe Test_HTTP_1&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; rserver S1&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; conn-limit max 9000 min 9000&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; inservice&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; rserver S2&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; conn-limit max 9000 min 9000&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; inservice&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; rserver S3&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; conn-limit max 9000 min 9000&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; inservice&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier;"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;sticky ip-netmask 255.255.255.255 address source STICKYGROUP1&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; timeout 600&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; replicate sticky&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; serverfarm SF1&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier;"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;class-map match-any L4VIPCLASS&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; 2 match virtual-address 1.1.1.10 tcp eq https&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; 3 match virtual-address 1.1.1.10 tcp eq www&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier;"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;class-map type http loadbalance match-all FULL_URL&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; 2 match http url &lt;A href="https://community.cisco.com/"&gt;https://%h/logonpage&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;policy-map type loadbalance first-match L7POLICY&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; class FULL_URL&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; sticky-serverfarm STICKYGROUP1&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; class class-default&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; serverfarm URL_Redirect_Farm&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier;"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;policy-map multi-match VIPPOLICY&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; class L4VIPCLASS&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; loadbalance vip inservice&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; loadbalance policy L7POLICY&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; loadbalance vip icmp-reply&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; nat dynamic 1 vlan 200&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier;"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;interface vlan 100&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; description OUTSIDE&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; ip address 1.1.1.2 255.255.255.0&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; access-group input OUTSIDE&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; service-policy input VIPPOLICY&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; no shutdown&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier;"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;interface vlan 200&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; description INSIDE&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; ip address 2.2.2.2 255.255.255.0&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; nat-pool 1 2.2.2.10 2.2.2.10 netmask 255.255.255.255 pat&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; no shutdown&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;ip route 0.0.0.0 0.0.0.0 1.1.1.1&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;ip route 10.0.0.0 255.0.0.0 2.2.2.1&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Without redirection, only with:&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;policy-map type loadbalance first-match L7POLICY&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp; class class-default&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; sticky-serverfarm STICKYGROUP1&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;it works, ACE load balances to rservers. Of course, user must enter full url.&lt;/P&gt;&lt;P&gt;With redirection configured, user recieves HTTP url redirect message with correct address &lt;A href="https://aa.bb.cc/logonpage"&gt;https://aa.bb.cc/logonpage&lt;/A&gt;, but his browser does not display the page. Even directly entered full url does not display it while redirection is configured.&lt;/P&gt;&lt;P&gt;Alternatively, does ACE30 already support url rewrite?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please help.&lt;/P&gt;&lt;P&gt;Thank you,&lt;/P&gt;&lt;P&gt;Lubomir&lt;/P&gt;</description>
      <pubDate>Mon, 19 Dec 2011 14:19:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/ace30-url-redirect/m-p/1832900#M36070</guid>
      <dc:creator>Lubo1</dc:creator>
      <dc:date>2011-12-19T14:19:25Z</dc:date>
    </item>
    <item>
      <title>ACE30 url redirect</title>
      <link>https://community.cisco.com/t5/application-networking/ace30-url-redirect/m-p/1832901#M36071</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Can you give some live http header traces ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also your&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;class-map type http loadbalance match-all FULL_URL&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;is wrong.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 19 Dec 2011 20:26:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/ace30-url-redirect/m-p/1832901#M36071</guid>
      <dc:creator>Surya ARBY</dc:creator>
      <dc:date>2011-12-19T20:26:15Z</dc:date>
    </item>
    <item>
      <title>Re: ACE30 url redirect</title>
      <link>https://community.cisco.com/t5/application-networking/ace30-url-redirect/m-p/1832902#M36072</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;What is wrong on FULL_URL class map? I tried several variants, none of them is working:&lt;/P&gt;&lt;P&gt;&lt;A href="https://aa.bb.cc/logonpage"&gt;https://aa.bb.cc/logonpage&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A&gt;https://%h%p/logonpage&lt;/A&gt;&lt;/P&gt;&lt;P&gt;/logonpage&lt;/P&gt;&lt;P&gt;&lt;A href="https://1.1.1.10/logonpage"&gt;https://1.1.1.10/logonpage&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thank you,&lt;/P&gt;&lt;P&gt;L.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 19 Dec 2011 20:54:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/ace30-url-redirect/m-p/1832902#M36072</guid>
      <dc:creator>Lubo1</dc:creator>
      <dc:date>2011-12-19T20:54:38Z</dc:date>
    </item>
    <item>
      <title>ACE30 url redirect</title>
      <link>https://community.cisco.com/t5/application-networking/ace30-url-redirect/m-p/1832903#M36073</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;class-map type http loadbalance match-all xxx-CM&lt;/P&gt;&lt;P&gt;&amp;nbsp; 2 match http url /url-path/.*&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 19 Dec 2011 21:01:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/ace30-url-redirect/m-p/1832903#M36073</guid>
      <dc:creator>Surya ARBY</dc:creator>
      <dc:date>2011-12-19T21:01:04Z</dc:date>
    </item>
    <item>
      <title>ACE30 url redirect</title>
      <link>https://community.cisco.com/t5/application-networking/ace30-url-redirect/m-p/1832904#M36074</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;No luck, I used:&lt;/P&gt;&lt;P&gt;/logonpage/.*&lt;/P&gt;&lt;P&gt;/aa.bb.cc/logonpage/.*&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please specify the exact text for my conditions. &lt;/P&gt;&lt;P&gt;Thank you.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 19 Dec 2011 21:19:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/ace30-url-redirect/m-p/1832904#M36074</guid>
      <dc:creator>Lubo1</dc:creator>
      <dc:date>2011-12-19T21:19:47Z</dc:date>
    </item>
    <item>
      <title>ACE30 url redirect</title>
      <link>https://community.cisco.com/t5/application-networking/ace30-url-redirect/m-p/1832905#M36075</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;If you are testing with https traffic this will&amp;nbsp; not work. You are not terminating SSL so all traffic is encrypted and the ACE will not be able to match any L7 data. Can you test with http traffic, or try configuring SSL termination and test again.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;BR /&gt;Jim&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 19 Dec 2011 21:52:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/ace30-url-redirect/m-p/1832905#M36075</guid>
      <dc:creator>jsirstin</dc:creator>
      <dc:date>2011-12-19T21:52:48Z</dc:date>
    </item>
    <item>
      <title>ACE30 url redirect</title>
      <link>https://community.cisco.com/t5/application-networking/ace30-url-redirect/m-p/1832906#M36076</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Jim,&lt;/P&gt;&lt;P&gt;removing SSL from ACE30 config did not help. The rserver is configured to change the communication to https and probably this does not match ACE config. &lt;/P&gt;&lt;P&gt;But I do not need ACE to inspect encrypted messages, I want it to simply balance. It should see url in unencrypted form, doesn't it? When I am not using redirect (sticky-serverfarm STICKYGROUP1 under class class-default), the SSL communication goes end-to-end between client and server without problems.&lt;/P&gt;&lt;P&gt;I also tried to configure SSL termination (client to ACE) and initiation (ACE to rserver). Everything works, until I use redirect. Without redirect, when I type full url &lt;A href="https://aa.bb.cc/logonpage"&gt;https://aa.bb.cc/logonpage&lt;/A&gt; to my browser, I receive ACE's certificate, and we establish the SSL connection. ACE also establish another SSL connection to rserver. Client gets correct log-on window.&lt;/P&gt;&lt;P&gt;But when I configure redirect, it does not work...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thank you.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 19 Dec 2011 23:18:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/ace30-url-redirect/m-p/1832906#M36076</guid>
      <dc:creator>Lubo1</dc:creator>
      <dc:date>2011-12-19T23:18:05Z</dc:date>
    </item>
    <item>
      <title>Re: ACE30 url redirect</title>
      <link>https://community.cisco.com/t5/application-networking/ace30-url-redirect/m-p/1832907#M36077</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Is your target "&lt;A href="https://aa.bb.cc/logonpage"&gt;https://aa.bb.cc/logonpage&lt;/A&gt;" hosted behind the same VIP on the ACE ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Your specific rule is related to your class-map and the general rule is to send the redirect. It can't work as you may go into an infinite loop.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can you explain exactly the behaviour you want ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When I read this : &lt;/P&gt;&lt;PRE __jive_macro_name="quote" class="jive_text_macro jive_macro_quote"&gt;&lt;P&gt;When a user enters IP address or a name of&amp;nbsp; a service (&lt;A href="http://aa.bb.cc/"&gt;http://aa.bb.cc&lt;/A&gt; or&amp;nbsp; &lt;A href="https://aa.bb.cc/"&gt;https://aa.bb.cc&lt;/A&gt;), the ACE module should redirect him to the page&amp;nbsp; &lt;A href="https://aa.bb.cc/logonpage"&gt;https://aa.bb.cc/logonpage&lt;/A&gt;&lt;/P&gt;&lt;/PRE&gt;&lt;P&gt;You have to define two virtual servers : one for HTTP where there only one rule : a redirect serverfarm in class-default&lt;/P&gt;&lt;P&gt;for HTTPS, SSL termination is mandatory but if you match anything except "/logonpage" you'll fall into an infinite loop at the next request.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The URL you have to match is just "/" to trigger the redirection (the request sent by the client is just "GET /" when he types the ip address or the name ONLY in the browser bar.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Don't forget to enable SSL rewrite if your backend application uses 302 redirect after the logon page. Otherwise you'll also fall into an infinite redirection loop.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 20 Dec 2011 08:12:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/ace30-url-redirect/m-p/1832907#M36077</guid>
      <dc:creator>Surya ARBY</dc:creator>
      <dc:date>2011-12-20T08:12:23Z</dc:date>
    </item>
    <item>
      <title>Re: ACE30 url redirect</title>
      <link>https://community.cisco.com/t5/application-networking/ace30-url-redirect/m-p/1832908#M36078</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Great hint, Surya,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;you got it. Configuring second VIP just for HTTP and redirect solved the problem.&lt;/P&gt;&lt;P&gt;Thank you very much for your help and effort!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Best regards,&lt;/P&gt;&lt;P&gt;Lubomir&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 20 Dec 2011 10:07:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/ace30-url-redirect/m-p/1832908#M36078</guid>
      <dc:creator>Lubo1</dc:creator>
      <dc:date>2011-12-20T10:07:06Z</dc:date>
    </item>
  </channel>
</rss>

