cancel
Showing results forĀ 
Search instead forĀ 
Did you mean:Ā 
cancel
381
Views
0
Helpful
1
Replies

Best stick option for End-to-End SSL

andrels
Level 1
Level 1

All,

We have some  end-to-end SSL VIP's on a 4710 box and currently using cookie insert as the stick mechanism. This stick method was chosen because mainly of our clients are behind proxy servers and therefore stick based on source-ip is not an option.

There's one of our applications that is not behaving correctly.  Briefly, some icons/buttons that does not appear correctly on the application.

Given this background... here's my questions/concerns:

1-) is it the best option for stickness whenever we have End-to-End SSL and clients are behind proxy servers?

2-) Did you guys ever seen applications behaving like this on a End-to-End SSL?

Thanks in advance,

Andre

1 Reply 1

Gilles Dufour
Cisco Employee
Cisco Employee

This is the only solution when you need to work with proxy servers.

ACE should not modify the content of the pages, so it should have an impact on applications.

Make sure you run the latest software version A3(2.7) and if the problem persists contact the TAC.

Be ready to provide sniffer trace with private keys so that they can decode the trace.

Gilles.

Review Cisco Networking for a $25 gift card