How to Configure Backup Persistence for SSL Session-ID.

How to Configure Backup Persistence for SSL Session-ID.

book

Article ID: CTX230557

calendar_today

Updated On:

Description

With SSL_BRIDGE virtual servers, the NetScaler does not terminate the SSL connection and therefore does not decrypt the traffic. As a result, it is unable to provide persistence based on application level data/meta data. However, persistence can be provided on SSL_BRIDGE virtual servers through Source IP or Session_ID. To avoid proxy problems, customers often opt to configure Session_ID over Source IP persistence.
If SSL renegotiation takes place between the client and server, this will break the Session_ID based persistent connection. To mitigate this issue, NetScaler 12.0 56.20 now offers the option to configure Source IP backup persistence.
 


Instructions

Selecting SSLSESSION persistence using either the option button or the list of persistence types (where applicable) will automatically reveal the option to configure Backup Persistence. Choose SOURCEIP from the Backup Persistence drop down list and configure any additional parameters if required.
Backup Persistence