Without SSL termination configured, HTTP requests are not inspected. The load balancer sees the source and destination IP addresses and encrypted data. If you want to inspect the HTTP requests, you can terminate the SSL session on the load balancer and then create a new SSL session towards the cell pool.
Prerequisites
- Import a PEM encoded file.
- Generate a CSR.
- Create a self-signed certificate.
Procedure
- Log in to the vSphere Web Client.
- Click .
- Double-click an NSX Edge.
- Click .
- Click Add, and specify the application profile parameters.
NSX Version Procedure 6.4.5 and later - In the Application Profile Type drop-down menu, select HTTPS Offloading.
- In the Persistence drop-down menu, select None.
- Click .
- Select the service certificate that you added for the NSX Edge load balancer.
6.4.4 and earlier - In the Type drop-down menu, select HTTPS.
- Ensure that the Enable SSL Passthrough check box is not selected.
- Go to Configure Service Certificate check box. , and click the
- Select the service certificate that you added for the NSX Edge load balancer.
- Click Add or OK.