You create an application profile in NSX Data Center for vSphere and associate it with a virtual server to define the behavior of a particular type of network traffic. The virtual server processes traffic according to the values specified in the profile.

Procedure

  1. In a Web browser, log in to vCenter Server by using the vSphere Client.
    Setting Value
    URL https://sfo01m01vc01.sfo01.rainpole.local/ui
    User name administrator@vsphere.local
    Password vsphere_admin_password
  2. In the Networking and security inventory, click NSX Edges.
  3. From the NSX Manager drop-down menu, select 172.16.11.65.
  4. Click the ID of the sfo01m01lb01 edge services gateway to open its network settings.
  5. Click the Load balancer tab and click Application profiles.
  6. Create each application profile for the cross-region Workspace ONE Access cluster.
    1. Click Add.
    2. In the New application profile dialog box, on the General tab, enter these values.

      Setting

      Value for wsa-https-app-profile

      Value for wsa-http-redirect

      Application profile type

      HTTPS End-to-End

      HTTP

      Name

      wsa-https-app-profile

      wsa-http-redirect

      HTTP redirect URL

      -

      https://wsa01svr01.rainpole.local/

      Persistence

      Cookie

      Source IP

      Cookie name

      wsa-cookie-persistence

      -

      Mode

      Insert

      -

      Expires in (seconds)

      3600

      1800

      Insert X-Forwarded-For HTTP header

      Enabled

      Disabled

    3. In the New application profile dialog box, click the Client SSL tab and enter these values.

      Setting

      Value for wsa-https-app-profile

      Value for wsa-http-redirect

      Client authentication

      Ignore

      -

      Service certificates

      Certificate for the cross-region Workspace ONE Access instance, wsa01svr01.rainpole.local

      -

      CA certificates

      Certificate for the Certificate Authority, rainpole-ca

      -

    4. In the New application profile dialog box, click the Server SSL tab and enter these values.

      Setting

      Value for wsa-https-app-profile

      Value for wsa-http-redirect

      Service certificates

      Certificate for the cross-region Workspace ONE Access instance, wsa01svr01.rainpole.local

      -

    5. Click Add to save the application profile.