
Proxies
BIG-IP® Reference Guide 4 - 111
To configure SSL shutdowns using the Configuration utility
1. In the navigation pane, click System.
2. Click the Advanced Properties tab.
3. In the Force Unclean Shutdown Of All SSL Connections box,
check or clear the check box.
4. Click Done.
To configure SSL shutdowns from the command line
To configure SSL shutdowns from the command line, type the bigpipe
global command with the appropriate arguments, as follows:
b global sslproxy unclean shutdown <enable | disable>
Resuming SSL sessions
In addition to forcing clean shutdowns, you can also configure the SSL
proxy to prevent an SSL session from being resumed after an unclean
shutdown. The default option is disable, which causes the SSL proxy to
allow uncleanly shut down SSL sessions to be resumed. Conversely, when
the enable option is set, the SSL proxy refuses to resume SSL sessions after
an unclean shutdown.
To configure the SSL proxy to resume SSL sessions using
the Configuration utility
You can allow the SSL proxy to resume, or prevent the SSL proxy from
resuming, SSL sessions after an unclean shutdown.
1. In the navigation pane, click System.
2. Click the Advanced Properties tab.
3. In the Do Not Resume Uncleanly Shutdown SSL Connections
box, check or clear the check box.
4. Click Done.
To configure the SSL proxy to resume SSL sessions from
the command line
To allow the SSL proxy to, or prevent the SSL proxy from, resuming SSL
sessions after an unclean shutdown from the command line, type the
bigpipe global command with the appropriate arguments, as follows:
b global sslproxy strict resume <enable | disable>
Disabling ARP requests
By default, the BIG-IP responds to ARP requests for proxy address and
sends a gratuitous ARP request for router table update. If you want to
disable the proxy address for ARP requests, you must specify arp disable.
Kommentare zu diesen Handbüchern