Forum Discussion
Tabish_Mirza_12
Nimbostratus
Customer wants to see the original source IP of the client on the Web Servers. Web servers are HTTPS based. As I know I can not go for One-Arm mode design because in One-Arm client source IP will change. In inline-routed mode (two arm) if we can not use same subnet on both interfaces then we have to change either web servers IP's or DMZ interface IP because currently server are using DMZ interface IP as a default gateway. Pls advise
Tabish_Mirza_12
Oct 07, 2013Nimbostratus
Jaison thanks for your clarification but I am not bother about SSL offload. I know I can do SSL offload on both design (Inline-routed mode or One-Arm mode). I am worried about original client source IP address as server teams wanna see original client source IP address on web servers. Server is HTTPS based. I can't go for X-forwarded-for method. Pls advise what is the best way to deploy BIG-IP in this situation.