Forum Discussion
Paul_Pindell
Feb 11, 2013Employee
Mali77,
View uses the certificates for two separate functions. one is for SSL session negotiation, and the second is to use the SSL certificate as a hash when generating the PCoIP Session token. It is possible to offload the SSL session negotiation function from the View servers. It is even advisable to do so as this will reduce the amount of SSL processing the View servers will have to do. Even so the View Server will still require the SSL Certificate in order to perform the second function (PCoIP Session token generation)
You are correct that in a normal SSL certificate implementation if you were to use the F5 device to preform SSL offload, you would not need to install the SSL certificate on the Servers that the F5 device is sitting in front of. It just so happens that View has this second function it performs with the SSL certificate, and thus needs the SSL certificate installed in order to perform this secondary function.
Paul