<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ACE URL Redirect in Application Networking</title>
    <link>https://community.cisco.com/t5/application-networking/ace-url-redirect/m-p/2395952#M41327</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hi Michael,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; Are you redirecting from &lt;A href="http://foo.com"&gt;http://foo.com&lt;/A&gt; to &lt;A href="http://foo.com/this/is/a/test"&gt;http://foo.com/this/is/a/test&lt;/A&gt; or https? In configuration you have https but in question you have mentioned http. If it is http to http then .*foo.com condition will match even after the redirection and again it will be redirected. It will be a loop.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Kanwal&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 30 Jan 2014 14:01:59 GMT</pubDate>
    <dc:creator>Kanwaljeet Singh</dc:creator>
    <dc:date>2014-01-30T14:01:59Z</dc:date>
    <item>
      <title>ACE URL Redirect</title>
      <link>https://community.cisco.com/t5/application-networking/ace-url-redirect/m-p/2395951#M41326</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;I am trying to redirect inbound connections from &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="http://foo.com"&gt;http://foo.com&lt;/A&gt;&lt;SPAN&gt; to &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="http://foo.com/this/is/a/test"&gt;http://foo.com/this/is/a/test&lt;/A&gt;&lt;SPAN&gt; 301.&amp;nbsp; The relevant portion of the redirect config is as follows:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;rserver redirect RD_QA_ANONYMOUS_LOGIN&lt;/P&gt;&lt;P&gt;&amp;nbsp; description Redirect Inbound Connections to Anonymous Login Page&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&amp;nbsp; webhost-redirection &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="https://foo.com/this/is/a/test"&gt;https://foo.com/this/is/a/test&lt;/A&gt;&lt;SPAN&gt; 301&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; inservice&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;serverfarm redirect SF_QA_ANON_LOGIN&lt;/P&gt;&lt;P&gt;&amp;nbsp; description Redirect Inbound Connections to Anonymous Login Page&lt;/P&gt;&lt;P&gt;&amp;nbsp; rserver RD_QA_ANONYMOUS_LOGIN&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; inservice&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;parameter-map type http REDIRECT&lt;/P&gt;&lt;P&gt;&amp;nbsp; description Redirect Inbound Connections to Anonymous Login Page&lt;/P&gt;&lt;P&gt;&amp;nbsp; case-insensitive&lt;/P&gt;&lt;P&gt;&amp;nbsp; persistence-rebalance&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;class-map match-any RD_PORTAL_QA_VIP_1&lt;/P&gt;&lt;P&gt;&amp;nbsp; description ***VIP for QA Customer Portal***&lt;/P&gt;&lt;P&gt;&amp;nbsp; 2 match virtual-address 10.145.19.135 any&lt;/P&gt;&lt;P&gt;class-map type http loadbalance match-all RD_QA_ANON_01&lt;/P&gt;&lt;P&gt;&amp;nbsp; 2 match http header Host header-value ".*foo.com/"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;policy-map type loadbalance first-match LB_RD_EXTPORTAL_QA_1&lt;/P&gt;&lt;P&gt;&amp;nbsp; class RD_QA_ANON_01&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; serverfarm SF_QA_ANON_LOGIN&lt;/P&gt;&lt;P&gt;policy-map multi-match EXT_TEST_POLICY&lt;/P&gt;&lt;P&gt;&amp;nbsp; class RD_PORTAL_QA_VIP_1&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; loadbalance vip inservice&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; loadbalance policy LB_RD_EXTPORTAL_QA_1&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; loadbalance vip icmp-reply active&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; appl-parameter http advanced-options REDIRECT&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Right now, the client is not receiving the redirect message, only a FIN.&amp;nbsp; I've tried several variations of the above config, with no success.&amp;nbsp; Any ideas?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Michael&lt;/P&gt;</description>
      <pubDate>Thu, 30 Jan 2014 01:32:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/ace-url-redirect/m-p/2395951#M41326</guid>
      <dc:creator>alleghieri</dc:creator>
      <dc:date>2014-01-30T01:32:20Z</dc:date>
    </item>
    <item>
      <title>ACE URL Redirect</title>
      <link>https://community.cisco.com/t5/application-networking/ace-url-redirect/m-p/2395952#M41327</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hi Michael,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; Are you redirecting from &lt;A href="http://foo.com"&gt;http://foo.com&lt;/A&gt; to &lt;A href="http://foo.com/this/is/a/test"&gt;http://foo.com/this/is/a/test&lt;/A&gt; or https? In configuration you have https but in question you have mentioned http. If it is http to http then .*foo.com condition will match even after the redirection and again it will be redirected. It will be a loop.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Kanwal&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 30 Jan 2014 14:01:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/ace-url-redirect/m-p/2395952#M41327</guid>
      <dc:creator>Kanwaljeet Singh</dc:creator>
      <dc:date>2014-01-30T14:01:59Z</dc:date>
    </item>
    <item>
      <title>ACE URL Redirect</title>
      <link>https://community.cisco.com/t5/application-networking/ace-url-redirect/m-p/2395953#M41328</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Kanwal,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Good question.&amp;nbsp; The answer is yes, both.&amp;nbsp; The first goal was to enable redirection without SSL.&amp;nbsp; After that was working, then next goal was to enable SSL.&amp;nbsp; Working with TAC, we came up with the following config, which enabled the redirection with SSL.&amp;nbsp; BTW:&amp;nbsp; The SSL config was already in place.&amp;nbsp; I am adding the SSL config for the sake of completeness.&amp;nbsp; Also we are re-writing headers in both directions:&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;crypto chaingroup CHAINGROUP&lt;/P&gt;&lt;P&gt;&amp;nbsp; cert ROOT&lt;/P&gt;&lt;P&gt;&amp;nbsp; cert WC_INTER_1&lt;/P&gt;&lt;P&gt;&amp;nbsp; cert WC_INTER_2&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;rserver redirect RD_REDIRECT_SERVICE&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;&lt;SPAN&gt;&amp;nbsp; webhost-redirection &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="https://community.cisco.com/"&gt;https://%h/this/is/a/test&lt;/A&gt;&lt;SPAN&gt; 301&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; inservice&lt;/P&gt;&lt;P&gt;rserver host RS_REAL_SERVER_01&lt;/P&gt;&lt;P&gt; &lt;SPAN style="font-size: 10pt;"&gt; ip address 10.10.10.10&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt; &lt;SPAN style="font-size: 10pt;"&gt; inservice&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;serverfarm host SF_REAL_SERVERFARM_01&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;&amp;nbsp; rserver RS_REAL_SERVICE_01 1000&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; inservice&lt;/P&gt;&lt;P&gt;serverfarm redirect SF_REDIRECT_SERVICE&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;&amp;nbsp; rserver RD_REDIRECT_SERVICE&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; inservice&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;parameter-map type http REWRITE&lt;/P&gt;&lt;P&gt;&amp;nbsp; description Enable Header Rewrites&lt;/P&gt;&lt;P&gt;&amp;nbsp; persistence-rebalance&lt;/P&gt;&lt;P&gt;&amp;nbsp; header modify per-request&lt;/P&gt;&lt;P&gt;parameter-map type ssl SSL_TERMINATION&lt;/P&gt;&lt;P&gt;&amp;nbsp; cipher RSA_WITH_RC4_128_MD5&lt;/P&gt;&lt;P&gt;&amp;nbsp; cipher RSA_WITH_RC4_128_SHA&lt;/P&gt;&lt;P&gt;&amp;nbsp; cipher RSA_WITH_3DES_EDE_CBC_SHA&lt;/P&gt;&lt;P&gt;&amp;nbsp; cipher RSA_WITH_AES_128_CBC_SHA&lt;/P&gt;&lt;P&gt;&amp;nbsp; cipher RSA_WITH_AES_256_CBC_SHA&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;sticky ip-netmask 255.255.255.0 address both STICKY_SERVERFARM_01&lt;/P&gt;&lt;P&gt;&amp;nbsp; timeout 600&lt;/P&gt;&lt;P&gt;&amp;nbsp; replicate sticky&lt;/P&gt;&lt;P&gt;&amp;nbsp; serverfarm SF_REAL_SERVERFARM_01&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;action-list type modify http MODIFY_HEADER_LIST&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&amp;nbsp; header rewrite response location header-value "&lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="http://inside"&gt;http://inside&lt;/A&gt;&lt;SPAN&gt;[.]foo[.]net(.*)" replace "&lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="https://community.cisco.com/"&gt;https://outside.foo.com%1&lt;/A&gt;&lt;SPAN&gt;"&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&amp;nbsp; header rewrite response location header-value "&lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="http://inside"&gt;http://inside&lt;/A&gt;&lt;SPAN&gt;[.]foo[.]com(.*)" replace "&lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="https://community.cisco.com/"&gt;https://outside.foo.com%1&lt;/A&gt;&lt;SPAN&gt;"&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; header rewrite request Host header-value "outside\.foo\.com" replace "inside.foo.com"&lt;/P&gt;&lt;P&gt;&amp;nbsp; ssl url rewrite location "outside\.foo\.com%1"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ssl-proxy service SSL_WC_01&lt;/P&gt;&lt;P&gt;&amp;nbsp; key WC_KEY&lt;/P&gt;&lt;P&gt;&amp;nbsp; cert WC_CERT&lt;/P&gt;&lt;P&gt;&amp;nbsp; chaingroup RAPID_SSL&lt;/P&gt;&lt;P&gt;&amp;nbsp; ssl advanced-options SSL_TERMINATION&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;class-map match-any VIP_1&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;&amp;nbsp; 2 match virtual-address 10.10.10.210 any&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;class-map type http loadbalance match-any LB_L7&lt;/P&gt;&lt;P&gt;&amp;nbsp; 2 match http url /.*&lt;/P&gt;&lt;P&gt;class-map type http loadbalance match-all REDIRECT_01&lt;/P&gt;&lt;P&gt;&amp;nbsp; 2 match http url /&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;policy-map type loadbalance first-match LB_POLICYMAP_1&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;&amp;nbsp; class REDIRECT_01&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; serverfarm SF_REDIRECT SERVICE&lt;/P&gt;&lt;P&gt;&amp;nbsp; class LB_L7&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; sticky-serverfarm STICKY_SERVERFARM_01&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; action MODIFY_HEADER_LIST&lt;/P&gt;&lt;P&gt;policy-map multi-match MM_POLICY&lt;/P&gt;&lt;P&gt;&amp;nbsp; class VIP_1&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; loadbalance vip inservice&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; loadbalance policy LB_POLICYMAP_1&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; loadbalance vip icmp-reply active&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; nat dynamic 1 vlan 60&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; appl-parameter http advanced-options REWRITE&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; ssl-proxy server SSL_WC_01&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 30 Jan 2014 21:04:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/ace-url-redirect/m-p/2395953#M41328</guid>
      <dc:creator>alleghieri</dc:creator>
      <dc:date>2014-01-30T21:04:20Z</dc:date>
    </item>
    <item>
      <title>ACE URL Redirect</title>
      <link>https://community.cisco.com/t5/application-networking/ace-url-redirect/m-p/2395954#M41329</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hi Michael,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So everything is working now? The above configuration looks good.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Kanwal&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 30 Jan 2014 21:11:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/ace-url-redirect/m-p/2395954#M41329</guid>
      <dc:creator>Kanwaljeet Singh</dc:creator>
      <dc:date>2014-01-30T21:11:26Z</dc:date>
    </item>
    <item>
      <title>ACE URL Redirect</title>
      <link>https://community.cisco.com/t5/application-networking/ace-url-redirect/m-p/2395955#M41330</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes, everything is working now.&amp;nbsp; According the TAC engineer, the root cause was not tying the redirect serverfarm to the real serverfarm in the loadbalancing policy map.&amp;nbsp; That and the regex strings in the class map.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Another question for you: one of my biggest challenges in configuring the ACE is constructing a regex that works.&amp;nbsp; It usually takes many attempts to find just the right combination.&amp;nbsp; I've read the Cisco doc on ACE regular expressions, but it does not provide enough information or examples, and it seems that the ACE regex syntax is somewhat different from the normal Unix syntax.&amp;nbsp; Do you know of a good document that covers the ACE regex syntax thoroughly?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Michael&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 31 Jan 2014 16:20:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/ace-url-redirect/m-p/2395955#M41330</guid>
      <dc:creator>alleghieri</dc:creator>
      <dc:date>2014-01-31T16:20:39Z</dc:date>
    </item>
    <item>
      <title>ACE URL Redirect</title>
      <link>https://community.cisco.com/t5/application-networking/ace-url-redirect/m-p/2395956#M41331</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Michael,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regex have always been tricky. I don't have any document but i use tool "regex builder" and it comes in handy every now and then to construct as well as correct regex syntax.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here's the link for download. There are other tools as well which you can use btw.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="http://sourceforge.net/projects/regexbuilder/"&gt;http://sourceforge.net/projects/regexbuilder/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Kanwal&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 31 Jan 2014 16:46:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/ace-url-redirect/m-p/2395956#M41331</guid>
      <dc:creator>Kanwaljeet Singh</dc:creator>
      <dc:date>2014-01-31T16:46:09Z</dc:date>
    </item>
    <item>
      <title>ACE URL Redirect</title>
      <link>https://community.cisco.com/t5/application-networking/ace-url-redirect/m-p/2395957#M41332</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I've used a couple of those.&amp;nbsp; The tricky thing is that, while you might have a correct regex in regex builder, it won't necessarily work on the ACE.&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;One thing I don't quite understand about the working config is why the "/" alone works as a match condition without resulting in a loop, while *foo.com/ created a loop.&amp;nbsp; Can you help with that?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;MB&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 31 Jan 2014 17:11:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/ace-url-redirect/m-p/2395957#M41332</guid>
      <dc:creator>alleghieri</dc:creator>
      <dc:date>2014-01-31T17:11:09Z</dc:date>
    </item>
    <item>
      <title>ACE URL Redirect</title>
      <link>https://community.cisco.com/t5/application-networking/ace-url-redirect/m-p/2395958#M41333</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hi Michael,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I don't have your complete configuration. But you have a good point. Why the loop will not happen is because of the below:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Client come to VIP 10.10.10.210 on http with URL anything or in your case foo.com. It matches the class map VIP_1 as well as REDIRECT_01. LB policy will come into action.Look at your policy map you have class redirect first. That should full fill the condition and you should be redirected to &lt;A href="https://foo.com"&gt;https://foo.com&lt;/A&gt;. When user comes with &lt;A href="https://foo.com/this/is/a/test"&gt;https://foo.com/this/is/a/test&lt;/A&gt;, he only satifies /.* and not / which tells it to go to a different serverfarm. That is the reason it works.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;class-map match-any VIP_1&lt;/P&gt;&lt;P&gt;2 match virtual-address 10.10.10.210 any&lt;/P&gt;&lt;P&gt;class-map type http loadbalance match-any LB_L7&lt;/P&gt;&lt;P&gt;2 match http url /.*&lt;/P&gt;&lt;P&gt;class-map type http loadbalance match-all REDIRECT_01&lt;/P&gt;&lt;P&gt;2 match http url /&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now in your case i just noticed that you have URL condition .*foo.com/ which actually doesn't match with foo.com which might be the reason redirection wasn't working. Below conditions should work too fine. You just need to have policy defined correctly.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;class-map match-any RD_PORTAL_QA_VIP_1&lt;/P&gt;&lt;P&gt;description ***VIP for QA Customer Portal***&lt;/P&gt;&lt;P&gt;2 match virtual-address 10.145.19.135 any&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;class-map type http loadbalance match-all RD_QA_ANON_02&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;2 match http header Host header-value ".*foo.com"&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;class-map type http loadbalance match-all RD_QA_ANON_01&lt;/P&gt;&lt;P&gt;2 match http header Host header-value ".*foo.com/"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this explains. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Kanwal&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 31 Jan 2014 18:54:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/ace-url-redirect/m-p/2395958#M41333</guid>
      <dc:creator>Kanwaljeet Singh</dc:creator>
      <dc:date>2014-01-31T18:54:49Z</dc:date>
    </item>
  </channel>
</rss>

