Forum Discussion
JRahm
Nov 07, 2017Admin
Strictly theoretically speaking...if you prevent 443 on mgmt interface and self IPs and force all connections to an clientssl-enabled vip with an iRule like...
when HTTP_REQUEST {
node 127.0.0.1 80
}
You could add logic to limit sessions. But that requires you open up management access on data paths which is a no-no in some security deployments.
The better more supported solution is to use the built-in tmsh command to do so:
modify sys httpd max-clients
where is the number of max-clients you desire (default: 10)