With SSL_BRIDGE virtual servers, the NetScaler does not terminate the SSL connection and therefore does not decrypt the traffic. As a result, it is unable to provide persistence based on application level data/meta data. However, persistence can be provided on SSL_BRIDGE virtual servers through Source IP or Session_ID. To avoid proxy problems, customers often opt to configure Session_ID over Source IP persistence.
If SSL renegotiation takes place between the client and server, this will break the Session_ID based persistent connection. To mitigate this issue, NetScaler 12.0 56.20 now offers the option to configure Source IP backup persistence.