cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
984
Views
0
Helpful
1
Replies

SSL decrypt and HTTPS to HTTP redirect via FMC

ns1888001
Level 1
Level 1

Hello team

 

We have few servers in DMZ that need to be accessed from public via http however we want to have HTTPS traffic between public clients and FTD and then between FTD and DMZ server it would be plain HTTP since server doesn't support HTTPS because it's old. OS. We're using SSL decrypt for other servers that support HTTPS and it works perfect. For old server our goal is to incorporate SSL decrypt in order to inspect the traffic and then to redirect it to HTTP so that server could accept it. Let me know if this is possible via FMC. 

1 Reply 1

Hi,

What you are looking for is called reverse proxy. You can not do reverse
proxy on FTD. You can do SSL inspection on FTD. For this purpose, you need
to have web proxies such as WSA from Cisco. There are other vendors
performing this such as bluecoat and F5.

You can provision load balancer on apache server to terminate SSL and pass
traffic to your backend servers.

**** please remember to rate useful posts
Review Cisco Networking for a $25 gift card