trafficserver-users mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From Ethan Lai <yz...@yahoo.com>
Subject Re: SSL-termination redirect loop
Date Tue, 06 May 2014 11:06:49 GMT
I'd suggest use different names.

Add DNS: real-webspace.local   192.168.196.3

redirect http://webspace.local https://webspace.local
map https://webspace.local http://real-webspace.local

Thanks,
-Ethan


2014-05-06 18:37 GMT+08:00 Reindl Harald <h.reindl@thelounge.net>:

> Hi
>
> the settings below (which only make no sense without
> the underlying DNS views) are resulting in a redirect
> loop  but why?
>
> redirect http://webspace.local https://webspace.local
> map https://webspace.local http://webspace.local
>
> * DNS-View external:    webspace.local -> 192.168.196.2 (192.168.196.2 =
> ATS)
> * DNS-View ATS machine: webspace.local -> 192.168.196.3 (192.168.196.3 =
> Origin)
>
> the reason for that views is that this way automatic configuration of
> ATS and dnsmasq based on webservices can be done and the decision using
> the proxy or directly point to the origin is done with the public DNS
> _____________________________________________________
>
> these two mappings are working fine with http and https
> so i assume the problem is that the non-http-origin URL
> triggers also teh redirect above
>
> map http://webspace.local http://webspace.local
> map https://webspace.local http://webspace.local
> _____________________________________________________
>
> these mappings also working because the origin itself
> is also accessed with https, but the idea of the config
> above is that ATS doing SSL termination, forcing the
> client to use https but the origin has no SSL
>
> redirect http://webspace.local https://webspace.local
> map https://webspace.local https://webspace.local
>
>

Mime
View raw message