<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ACE 30 redirect question in Application Networking</title>
    <link>https://community.cisco.com/t5/application-networking/ace-30-redirect-question/m-p/2795282#M43005</link>
    <description>&lt;P&gt;Hi&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I have a ACE 30 with a VIP listening on 443 the passing traffic out to the rservers also on 443 - no ssl offload.&lt;/P&gt;
&lt;P&gt;Is it possible to have a redirect for clients coming in on http to redirect to https?&lt;/P&gt;
&lt;P&gt;Any config examples would be handy.&lt;/P&gt;
&lt;P&gt;thanks&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
    <pubDate>Fri, 05 Feb 2016 14:40:04 GMT</pubDate>
    <dc:creator>derek wilson</dc:creator>
    <dc:date>2016-02-05T14:40:04Z</dc:date>
    <item>
      <title>ACE 30 redirect question</title>
      <link>https://community.cisco.com/t5/application-networking/ace-30-redirect-question/m-p/2795282#M43005</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I have a ACE 30 with a VIP listening on 443 the passing traffic out to the rservers also on 443 - no ssl offload.&lt;/P&gt;
&lt;P&gt;Is it possible to have a redirect for clients coming in on http to redirect to https?&lt;/P&gt;
&lt;P&gt;Any config examples would be handy.&lt;/P&gt;
&lt;P&gt;thanks&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 05 Feb 2016 14:40:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/ace-30-redirect-question/m-p/2795282#M43005</guid>
      <dc:creator>derek wilson</dc:creator>
      <dc:date>2016-02-05T14:40:04Z</dc:date>
    </item>
    <item>
      <title>Derek, maybe you can check</title>
      <link>https://community.cisco.com/t5/application-networking/ace-30-redirect-question/m-p/2795283#M43006</link>
      <description>&lt;P&gt;Derek, maybe you can check this link:&amp;nbsp;https://supportforums.cisco.com/document/12439761/cisco-ace-http-https-redirection-ssl-termination&lt;/P&gt;
&lt;P&gt;Hope this helps!&lt;/P&gt;
&lt;P&gt;Jorge&lt;/P&gt;
&lt;P&gt;Don´t forget to rate the answer.&lt;/P&gt;</description>
      <pubDate>Tue, 09 Feb 2016 06:25:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/ace-30-redirect-question/m-p/2795283#M43006</guid>
      <dc:creator>Jorge Bejarano</dc:creator>
      <dc:date>2016-02-09T06:25:34Z</dc:date>
    </item>
    <item>
      <title>Re: ACE 30 redirect question</title>
      <link>https://community.cisco.com/t5/application-networking/ace-30-redirect-question/m-p/3297925#M43416</link>
      <description>hi dear , &lt;BR /&gt;have you got answer about the above question , since i have the same query ?</description>
      <pubDate>Mon, 18 Dec 2017 14:13:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/ace-30-redirect-question/m-p/3297925#M43416</guid>
      <dc:creator>Ahmed Sabanaa</dc:creator>
      <dc:date>2017-12-18T14:13:39Z</dc:date>
    </item>
    <item>
      <title>Re: ACE 30 redirect question</title>
      <link>https://community.cisco.com/t5/application-networking/ace-30-redirect-question/m-p/3382687#M43480</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;you can try this configuration&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;rserver redirect rserver-redir_HTTPtoHTTPS&lt;BR /&gt;&amp;nbsp; webhost-redirection https://%h/%p 301&lt;BR /&gt;&amp;nbsp; inservice&lt;/P&gt;
&lt;P&gt;serverfarm redirect sfarm-redirect_HTTPtoHTTPS&lt;BR /&gt;&amp;nbsp; rserver rserver-redir_HTTPtoHTTPS&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; inservice&lt;/P&gt;
&lt;P&gt;class-map match-any cmap-vip_HTTPtoHTTPS&lt;BR /&gt;&amp;nbsp; 2 match virtual-address 192.168.10.10 tcp eq www&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;policy-map type loadbalance first-match pmap-lb_HTTPtoHTTPS&lt;BR /&gt;&amp;nbsp; class class-default&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; serverfarm sfarm-redirect_HTTPtoHTTPS&lt;BR /&gt;policy-map multi-match pmap_whatever&lt;BR /&gt;&amp;nbsp; class cmap-vip_HTTPtoHTTPS&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; loadbalance vip inservice&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; loadbalance policy pmap-lb_HTTPtoHTTPS&lt;/P&gt;</description>
      <pubDate>Mon, 14 May 2018 10:41:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/ace-30-redirect-question/m-p/3382687#M43480</guid>
      <dc:creator>Marko Leopold</dc:creator>
      <dc:date>2018-05-14T10:41:42Z</dc:date>
    </item>
    <item>
      <title>Re: ACE 30 redirect question</title>
      <link>https://community.cisco.com/t5/application-networking/ace-30-redirect-question/m-p/3760986#M51062</link>
      <description>&lt;P&gt;I will give you for one rserver, one serverfarm, one class map. You please do that same for rest of them. Test one first and replicate to others.&lt;BR /&gt;&lt;BR /&gt;rserver redirect QA-group_1_redirect_rserver&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp; webhost-redirection&lt;BR /&gt;&lt;BR /&gt;&lt;A href="https://10.37.5.93/&amp;nbsp;" target="_blank"&gt;https://10.37.5.93/&amp;nbsp;&lt;/A&gt; 302&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp; inservice&lt;BR /&gt;&lt;BR /&gt;This is the redirect server.&lt;BR /&gt;&lt;BR /&gt;rserver host QA-1.1&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp; ip address 10.37.5.111&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp; inservice&lt;BR /&gt;&lt;BR /&gt;rserver host QA-1.2&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp; ip address 10.37.5.88&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp; inservice&lt;BR /&gt;&lt;BR /&gt;Normal servers to which the traffic would be loadbalanced.&lt;BR /&gt;&lt;BR /&gt;serverfarm redirect SF_QA-group_1_REDIRECT&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp; rserver QA-group_1_redirect_rserver&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; inservice&lt;BR /&gt;&lt;BR /&gt;This is redirect serverfarm&lt;BR /&gt;&lt;BR /&gt;serverfarm host SF_QA-group_1_HTTPS&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp; failaction reassign&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp; predictor leastconns&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp; rserver QA-1.1 443&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; inservice&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp; rserver QA-1.2 443&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; inservice&lt;BR /&gt;&lt;BR /&gt;Normal serverfarm with two rservers in it to which we will loadbalance the traffic.&lt;BR /&gt;&lt;BR /&gt;class-map match-all QA-group_1_HTTP&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp; 3 match virtual-address 10.37.5.93 tcp eq www&lt;BR /&gt;&lt;BR /&gt;The class-map is condition for redirection. If user comes on 10.37.5.93 on 80.&lt;BR /&gt;&lt;BR /&gt;class-map match-all QA-group_1_HTTPS&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp; 3 match virtual-address 10.37.5.93 tcp eq https&lt;BR /&gt;&lt;BR /&gt;Condition for user coming on port 443&lt;BR /&gt;&lt;BR /&gt;policy-map type loadbalance first-match QA-group_1_REDIRECT&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp; class class-default&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; serverfarm SF_QA-group_1_REDIRECT&lt;BR /&gt;&lt;BR /&gt;This is a policy or action which ACE will take after the condition matches which is to redirect.&lt;BR /&gt;&lt;BR /&gt;policy-map type loadbalance first-match QA_GROUP1_HTPPS&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp; class class-default&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; serverfarm SF_QA-group_1_HTTPS&lt;BR /&gt;&lt;BR /&gt;This is for HTTPS&lt;BR /&gt;&lt;BR /&gt;policy-map multi-match SERVICE_VIPS&lt;BR /&gt;&amp;nbsp; class QA-group_1_HTTP&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; loadbalance vip inservice&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; loadbalance policy QA-group_1_REDIRECT&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; loadbalance vip icmp-reply&lt;BR /&gt;&amp;nbsp; class QA-group_1_HTTPS&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; loadbalance vip inservice&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; loadbalance policy QA_GROUP1_HTPPS&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; loadbalance vip icmp-reply&lt;BR /&gt;&lt;BR /&gt;Same action is applied to the policy. If it matches class QA-group_1_HTTP, redirect it, since redirect policy is applied and if it matches class QA-group_1_HTTPS, loadbalance the traffic since LB policy is applied.&lt;/P&gt;</description>
      <pubDate>Tue, 11 Dec 2018 02:25:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/ace-30-redirect-question/m-p/3760986#M51062</guid>
      <dc:creator>sbhadrav@cisco.com</dc:creator>
      <dc:date>2018-12-11T02:25:42Z</dc:date>
    </item>
  </channel>
</rss>

