Hi,This is correct; you cannot have the VIP and real using the same IP in the config. This will be seen as a Dup IP from the ACE perspective since it owns the VIP IP. How you do this is to configure the server with a unique IP from the subnet configu...
Rick,I think you have it backwardsclass-map match-any L4-CLASS-TESTPOC-validate 10 match access-list ACL_nameclass-map match-any L4-CLASS-TESTPOC-SSL 10 match virtual-address 5.5.5.5 tcp eq httpspolicy-map multi-match CLIENT-VIPS class L4-CLASS-T...
Rick,What about just using two different class-maps.the first one would match on an ACL for the specific users that you want to hit the login/vlidate page.build out the ACL and create the class-map to match on.access-list ACL_name extended permit tc...
Lubomir,Can you provide some samples of what the incorrect URLs would look like as well as correct ones? You are correct that we can instruct the ACE to ignore some characters in a string but the rest of the regex must still match exactly for the cla...
Lubomir,Unfortunately I cannot think of a way to do this. Anything that does not match your L7 class-maps will be sent to class class-default. Unless you can come up with some kind of regex match that will cover all possible incoirrect URLs I do not...