IIS Logs display CSS11501 IP address instead of external source IP address.

(FW)---(CSS11501)---(SERVERS)
Basic configuration, everything on VLAN1. Servers in web farm are logging attacks, etc. Source IP address all show the CSS instead of the originating IP address coming from the outside.
What do I need to add/change to allow servers to see the actual IPs from the outside?

Yes, inline configuration. FW connects to L2 switch crossed over to CSS, Servers are connected to CSS ports directly. However the servers Default Gateway is the FW not the CSS, that is what I believe I need to change in order for it to work, is that correct, or is there something else?
Example:
circuit VLAN1
ip address x.x.x.x x.x.x.x
owner xyz
address "xyz"
content rule.100.https
protocol tcp
port 443
url "/*"
add service serv.1.https weight 1
add service serv.2.https weight 2
add service serv.3.https weight 3
vip address x.x.x.100
application ssl
advanced-balance ssl
sticky-mask 255.255.255.0
sticky-inact-timeout 15
dnsbalance roundrobin
balance srcip
active
group source.100
vip address x.x.x.100
add destination service serv.1.https
add destination service serv.2.https
add destination service serv.3.https
active

Similar Messages

  • ISCSI Initiator favourites revert to using the IPv6 or the apipa IP address from other NICs instead of the source IP address that I specified

    Windows 2008 R2
    ISCSI Initiator favourites revert to using the IPv6 or the apipa IP address from other NICs instead of the source IP address that I specified. 
    When I manually connect to multiple targets and specify the correct ISCSI source IP address, I check the favourites and everything looks okay. But when the server is rebooted I check the favourites again and the source IP is now referencing the IPv6 and
    sometimes the apipa address. 
    I have unbound IPv6 from the ISCSI NICS but this has made no difference.
    Can anyone explain why this is happening?
    Although the server still reconnects to the storage oaky, I’m concerned that if a path goes down that is might try to use the wrong interface to re-establish a connection.
    Thanks.  

    Hi,
    IPV6 is supported with MS iSCSI. Do you have Multiple Connections per Session (MCS) configured? Is your storage configured to use both IPv4 and IPv6?
    If yes, please see if http://support.microsoft.com/kb/2014131 helps.
    Hope this helps.
    We
    are trying to better understand customer views on social support experience, so your participation in this
    interview project would be greatly appreciated if you have time.
    Thanks for helping make community forums a great place.

  • How do I change my Apple ID to use my @me email address instead of my old email address?

    Hi,
    I recently started to use iCloud and have therfore now got an @me email address. I have managed to make it my primary email address but it won't let me make it my Apple ID even though there is an option to make your primary email address one of the same.
    When I try it says "You cannot create an Apple ID using a MobileMe account. If this is your email address, it is also your Apple ID."
    I can log in to Apple using my @me email address but it displays my old, not in use any more, email address and it really annoys me.
    Does any one know how I can get it to use only my @me address and completely forget my old one?
    Thanks,
    Andy

    There is a lot of confusion about Apple ID and I think this has come about mainly becuase Apple introduced .Me Accounts. Prior to that there was only .Mac. My iCal and Contacts were syncing fine until I visited "Manage Your Apple ID" I was prompted to change my Apple ID and Primary Email Address. After doing so I lost the syncing between devises as my iCloud on my iPhone was set to my .Me account and my MacBook Pro to .Mac.
    Once you've changed your Apple ID and Primary Email Addressto .Mac you can't seemingly go back to .Me which I think is crazy. My work around has been to delete my iCloud Account on my iPhone and then set it up again using my .Mac Account. I now have to do the same on my MBP.
    A word of caution before making any changes always make sure your iCal and Contacts info. are backed-up!

  • Log connection attempts and source IP address for connections that fail/timeout on RADIUS

    How can I log the connection attempts and source IP address for connections that fail RADIUS authentication?  I'm using RD Gateway on 2012 R2 in conjunction with Azure Multi-Factor Authentication Server on another 2012 R2 server.  When a user fails
    multifactor authentication or the authentication times out, all I get is Security event 6273 on the RD Gateway that the radius server did not process the request, and only the radius server's IP is logged.  There's nothing logged in TerminalServices-Gateway\Operational
    because the TS Gateway hasn't yet processed the connection attempt (all auditing options for RD Gateway are enabled).  The MFA/Radius Server is only logging the connection from the TSGateway - it doesn't know the original client's IP address.
    I'm looking for the equivalent of an IIS log - somewhere the RD Gateway should log the initial HTTPS connection attempt and the source IP address of the client.  I need to be able to track down potentially fraudulent login attempts. 

    Hi,
    Thank you for your posting in Windows Server Forum.
    This error might be caused by one of the following conditions:
    •  The user does not have valid credentials
    •  The connection method is not allowed by network policy
    •  The network access server is under attack
    •  NPS does not have access to the user account database on the domain controller
    •  NPS log files or the SQL Server database are not available
    To perform these procedures, you must be a member of Domain Admins.
    Please check for more information:
    Event ID 6273 — NPS Authentication Status
    http://technet.microsoft.com/en-us/library/cc735399(v=ws.10).aspx
    Hope it helps!
    Thanks.
    Dharmesh Solanki

  • Server returning Internal for Lyncdiscover instead of External

    Hi,
    I am faced with problem of lyncdiscover returning Internal web address instead of External web address. I have read through so many other questions that are similar to this but there was no solution to my own problem. My CsMCXconfig is set to external. When
    i use lync connectivity tester, it reveal the same thing when testing from external environment. I am using ARR 3.0 on win 2012 R2 as my reverse proxy.
    Any help will be appreciated.

    I am attaching the log from the mobile and see if it can be useful for you in resolving the problem.
    ProgressBar: updateDrawableBounds: top = 0
    03-10 11:50:02.484 29455 29455 D ProgressBar: updateDrawableBounds: right = 24
    03-10 11:50:02.484 29455 29455 D ProgressBar: updateDrawableBounds: bottom = 24
    03-10 11:50:02.484 29455 29455 I LyncAudio: LyncAudioManager is running
    03-10 11:50:02.714 29455 29455 I HttpConnection: originalurl is https://lyncwebint.org.domain.com/autodiscover/autodiscoverservice.svc/root/user?originaldomain=domain.com
    03-10 11:50:02.714 29455 29455 I HttpConnection: decodedurl is https://lyncwebint.org.domain.com/autodiscover/autodiscoverservice.svc/root/user?originaldomain=domain.com
    03-10 11:50:02.714 29455 29455 V HttpConnection: post request: https://lyncwebint.org.domain.com/autodiscover/autodiscoverservice.svc/root/user?originaldomain=domain.com
    03-10 11:50:02.724 29455 29490 V HttpConnection: send request: https://lyncwebint.org.domain.com/autodiscover/autodiscoverservice.svc/root/user?originaldomain=domain.com
    03-10 11:50:02.734 29455 29490 E HttpEngine: AutoRedirect true for https://lyncwebint.org.domain.com/autodiscover/autodiscoverservice.svc/root/user?originaldomain=domain.com and setting it to FALSE for manual handling
    03-10 11:50:02.734 29455 29490 V HttpEngine: Executing request with https://lyncwebint.org.domain.com/autodiscover/autodiscoverservice.svc/root/user?originaldomain=domain.com Connection pool count is 2
    03-10 11:50:03.245 29455 29490 W DefaultRequestDirector: Authentication error: Unable to respond to any of these challenges: {}
    03-10 11:50:03.245 29455 29490 V HttpConnection: got Response: https://lyncwebint.org.domain.com/autodiscover/autodiscoverservice.svc/root/user?originaldomain=domain.com
    03-10 11:50:03.285 29455 29455 V RandomUtils: Generated randombytes of length: 256
    03-10 11:50:03.285 29455 29455 I HttpConnection: originalurl is https://lyncwebint.org.domain.com/webticket/webticketservice.svc/mex
    03-10 11:50:03.285 29455 29455 I HttpConnection: decodedurl is https://lyncwebint.org.domain.com/webticket/webticketservice.svc/mex
    03-10 11:50:03.285 29455 29455 V HttpConnection: set body- length=492
    03-10 11:50:03.285 29455 29455 V HttpConnection: post request: https://lyncwebint.org.domain.com/webticket/webticketservice.svc/mex
    03-10 11:50:03.295 29455 29492 V HttpConnection: send request: https://lyncwebint.org.domain.com/webticket/webticketservice.svc/mex
    03-10 11:50:03.295 29455 29492 E HttpEngine: AutoRedirect true for https://lyncwebint.org.domain.com/webticket/webticketservice.svc/mex and setting it to FALSE for manual handling
    03-10 11:50:03.295 29455 29492 V HttpEngine: Executing request with https://lyncwebint.org.domain.com/webticket/webticketservice.svc/mex Connection pool count is 3
    03-10 11:50:03.305 29455 29472 V HttpConnection: got Response: http://lyncdiscoverinternal.domain.com/
    03-10 11:50:04.216 29455 29492 V HttpConnection: got Response: https://lyncwebint.org.domain.com/webticket/webticketservice.svc/mex
    03-10 11:50:04.316 29455 29455 I HttpConnection: originalurl is https://lyncwebint.org.domain.com/webticket/webticketservice.svc/auth
    03-10 11:50:04.316 29455 29455 I HttpConnection: decodedurl is https://lyncwebint.org.domain.com/webticket/webticketservice.svc/auth
    03-10 11:50:04.326 29455 29455 V HttpConnection: set body- length=1465
    03-10 11:50:04.326 29455 29455 V HttpConnection: post request: https://lyncwebint.org.domain.com/webticket/webticketservice.svc/auth
    03-10 11:50:04.326 29455 29471 V HttpConnection: send request: https://lyncwebint.org.domain.com/webticket/webticketservice.svc/auth
    03-10 11:50:04.326 29455 29471 E HttpEngine: AutoRedirect true for https://lyncwebint.org.domain.com/webticket/webticketservice.svc/auth and setting it to FALSE for manual handling
    03-10 11:50:04.326 29455 29471 V HttpEngine: Executing request with https://lyncwebint.org.domain.com/webticket/webticketservice.svc/auth Connection pool count is 3
    03-10 11:50:05.457 29455 29471 V HttpConnection: got Response: https://lyncwebint.org.domain.com/webticket/webticketservice.svc/auth
    03-10 11:50:05.487 29455 29455 I HttpConnection: originalurl is https://lyncwebint.org.domain.com/autodiscover/autodiscoverservice.svc/root/user?originaldomain=domain.com
    03-10 11:50:05.487 29455 29455 I HttpConnection: decodedurl is https://lyncwebint.org.domain.com/autodiscover/autodiscoverservice.svc/root/user?originaldomain=domain.com
    03-10 11:50:05.487 29455 29455 V HttpConnection: post request: https://lyncwebint.org.domain.com/autodiscover/autodiscoverservice.svc/root/user?originaldomain=domain.com
    03-10 11:50:05.487 29455 29490 V HttpConnection: send request: https://lyncwebint.org.domain.com/autodiscover/autodiscoverservice.svc/root/user?originaldomain=domain.com
    03-10 11:50:05.487 29455 29490 E HttpEngine: AutoRedirect true for https://lyncwebint.org.domain.com/autodiscover/autodiscoverservice.svc/root/user?originaldomain=domain.com and setting it to FALSE for manual handling
    03-10 11:50:05.487 29455 29490 V HttpEngine: Executing request with https://lyncwebint.org.domain.com/autodiscover/autodiscoverservice.svc/root/user?originaldomain=domain.com Connection pool count is 3
    03-10 11:50:06.058 29455 29490 V HttpConnection: got Response: https://lyncwebint.org.domain.com/autodiscover/autodiscoverservice.svc/root/user?originaldomain=domain.com
    03-10 11:50:06.178 29455 29455 I HttpConnection: originalurl is https://lyncwebext.domain.com/ucwa/v1/applications
    03-10 11:50:06.178 29455 29455 I HttpConnection: decodedurl is https://lyncwebext.domain.com/ucwa/v1/applications
    03-10 11:50:06.178 29455 29455 V HttpConnection: post request: https://lyncwebext.domain.com/ucwa/v1/applications
    03-10 11:50:06.178 29455 29472 V HttpConnection: send request: https://lyncwebext.domain.com/ucwa/v1/applications
    03-10 11:50:06.178 29455 29472 E HttpEngine: AutoRedirect true for https://lyncwebext.domain.com/ucwa/v1/applications and setting it to FALSE for manual handling
    03-10 11:50:06.178 29455 29472 V HttpEngine: Executing request with https://lyncwebext.domain.com/ucwa/v1/applications Connection pool count is 3
    03-10 11:50:06.258 29455 29472 E HttpConnection: javax.net.ssl.SSLException: SSL handshake aborted: ssl=0x4db48770: I/O error during system call, Connection reset by peer
    03-10 11:50:06.258 29455 29472 E HttpConnection: at org.apache.harmony.xnet.provider.jsse.NativeCrypto.SSL_do_handshake(Native Method)
    03-10 11:50:06.258 29455 29472 E HttpConnection: at org.apache.harmony.xnet.provider.jsse.OpenSSLSocketImpl.startHandshake(OpenSSLSocketImpl.java:378)
    03-10 11:50:06.258 29455 29472 E HttpConnection: at org.apache.harmony.xnet.provider.jsse.OpenSSLSocketImpl$SSLInputStream.<init>(OpenSSLSocketImpl.java:649)
    03-10 11:50:06.258 29455 29472 E HttpConnection: at org.apache.harmony.xnet.provider.jsse.OpenSSLSocketImpl.getInputStream(OpenSSLSocketImpl.java:620)
    03-10 11:50:06.258 29455 29472 E HttpConnection: at org.apache.http.impl.io.SocketInputBuffer.<init>(SocketInputBuffer.java:70)
    03-10 11:50:06.258 29455 29472 E HttpConnection: at org.apache.http.impl.SocketHttpClientConnection.createSessionInputBuffer(SocketHttpClientConnection.java:83)
    03-10 11:50:06.258 29455 29472 E HttpConnection: at org.apache.http.impl.conn.DefaultClientConnection.createSessionInputBuffer(DefaultClientConnection.java:170)
    03-10 11:50:06.258 29455 29472 E HttpConnection: at org.apache.http.impl.SocketHttpClientConnection.bind(SocketHttpClientConnection.java:106)
    03-10 11:50:06.258 29455 29472 E HttpConnection: at org.apache.http.impl.conn.DefaultClientConnection.openCompleted(DefaultClientConnection.java:129)
    03-10 11:50:06.258 29455 29472 E HttpConnection: at org.apache.http.impl.conn.DefaultClientConnectionOperator.openConnection(DefaultClientConnectionOperator.java:172)
    03-10 11:50:06.258 29455 29472 E HttpConnection: at org.apache.http.impl.conn.AbstractPoolEntry.open(AbstractPoolEntry.java:164)
    03-10 11:50:06.258 29455 29472 E HttpConnection: at org.apache.http.impl.conn.AbstractPooledConnAdapter.open(AbstractPooledConnAdapter.java:119)
    03-10 11:50:06.258 29455 29472 E HttpConnection: at org.apache.http.impl.client.DefaultRequestDirector.execute(DefaultRequestDirector.java:360)
    03-10 11:50:06.258 29455 29472 E HttpConnection: at org.apache.http.impl.client.AbstractHttpClient.execute(AbstractHttpClient.java:555)
    03-10 11:50:06.258 29455 29472 E HttpConnection: at org.apache.http.impl.client.AbstractHttpClient.execute(AbstractHttpClient.java:487)
    03-10 11:50:06.258 29455 29472 E HttpConnection: at com.microsoft.office.lync.platform.HttpEngine.execute(HttpEngine.java:373)
    03-10 11:50:06.258 29455 29472 E HttpConnection: at com.microsoft.office.lync.platform.HttpConnection$1.run(HttpConnection.java:276)
    03-10 11:50:06.258 29455 29472 E HttpConnection: at java.util.concurrent.Executors$RunnableAdapter.call(Executors.java:390)
    03-10 11:50:06.258 29455 29472 E HttpConnection: at java.util.concurrent.FutureTask.run(FutureTask.java:234)
    03-10 11:50:06.258 29455 29472 E HttpConnection: at java.util.concurrent.ThreadPoolExecutor.runWorker(ThreadPoolExecutor.java:1080)
    03-10 11:50:06.258 29455 29472 E HttpConnection: at java.util.concurrent.ThreadPoolExecutor$Worker.run(ThreadPoolExecutor.java:573)
    03-10 11:50:06.258 29455 29472 E HttpConnection: at java.lang.Thread.run(Thread.java:856)
    03-10 11:50:06.258 29455 29455 I HttpConnection: originalurl is https://lyncwebext.domain.com/ucwa/v1/applications
    03-10 11:50:06.258 29455 29455 I HttpConnection: decodedurl is https://lyncwebext.domain.com/ucwa/v1/applications
    03-10 11:50:06.258 29455 29455 V HttpConnection: post request: https://lyncwebext.domain.com/ucwa/v1/applications
    03-10 11:50:06.258 29455 29492 V HttpConnection: send request: https://lyncwebext.domain.com/ucwa/v1/applications
    03-10 11:50:06.258 29455 29492 E HttpEngine: AutoRedirect true for https://lyncwebext.domain.com/ucwa/v1/applications and setting it to FALSE for manual handling
    03-10 11:50:06.258 29455 29492 V HttpEngine: Executing request with https://lyncwebext.domain.com/ucwa/v1/applications Connection pool count is 3
    03-10 11:50:06.278 29455 29492 E HttpConnection: javax.net.ssl.SSLException: SSL handshake aborted: ssl=0x4db48
    Thank you

  • What source ip address is sent as part of DHCP discover packet?

    As part of DHCP discover packet what source ip address is sent.

    The source IP address is all zero's

  • I just updated to 10.8.4 and my mail program is showing a series of boxes with AAAAs inside them instead of the email addresses. Also when on Safari web pages are displaying the same AAAAAs instead of type. Firefox displays fine. Can someone help me?

    I just updated to 10.8.4 and my mail program is showing a series of boxes with AAAAs inside them instead of the email addresses. Also when on Safari web pages are displaying the same AAAAAs instead of type. Firefox displays fine. Can someone help me?

    Restart your Mac and immediately hold down the Shift key when you hear the startup chime to boot into Safe Mode. Keep holding the Shift key until you see a progress bar towards the bottom of the screen. You can let go of the Shift key at that point.
    OS X asks you to log in (you will get this screen on a Safe Mode boot even if your Mac is set to automatically log in). Let the Mac finish booting to the desktop and then restart normally. This will clear Font Book's database and the cache files of the user account you logged into in Safe Mode.
    Next, close all running applications. From an administrator account, open the Terminal app and enter the following command. You can also copy/paste it from here into the Terminal window:
    sudo atsutil databases -remove
    Terminal will then ask for your admin password. As you type, it will not show anything, so be sure to enter it correctly.
    This removes all font cache files. Both for the system and the current user font cache files. After running the command, close Terminal and immediately restart your Mac.

  • Log display showing XML instead of table

    Had a customer re-install xMII 11.5 SR3 and copy transactions, config XML files, ref docs, etc.  We don't know exactly the extent of what was/was not copied.
    Now the logs (general, user, etc.) are being displayed as xMII XML instead of being transformed into the standard HTML table.  BLE is working, applets work, portal navigation works, IIS is running, and the .../wwwroot/Illuminator/StyleSheets directory appears ok. 
    Any ideas or things to check?
    Thanks,
    -tim

    Tim,
    Check to make sure that for both the IIS root directory and Lighthammer directories so that the SYSTEM and IUSR_<MachineName> users have Full Control and Inheritable permissions are set.  Sometimes these are lost by Windows and the application can't access various resources properly.
    Hope this helps.
    Sam

  • IMessage displays my email address instead of contact name on other peoples iPhone

    iMessage displays my email address instead of contact name on other peoples iPhone and everything I try does not fix it!!
    Please help!!!!!!!

    whether your number or email address is desplayed depends on how you have Caller ID set.
    Settings -> Messages ->Receive At ->Caller ID (chose what you want displayed)

  • When I send an email it displays the full email address instead of just the name even thought the person is in my contacts. How to fix?

    When I send an email it displays the full email address instead of just the name even thought the person is in my contacts. How to fix?

    Hi Sunny C,
    Welcome to the Support Communities!  The "From" field should be showing by default, but you can check or change your settings for Mail with the instructions below:
    Mail (Yosemite): Set Mail preferences
    http://support.apple.com/kb/PH19178
    In the Composing pane, you can set the email account that you want to send new messages from.
    Also, check the View command on the Menu bar.  View > Message Attributes should have a checkmark beside the "From" field.
    Cheers,
    Judy

  • When there is call on Lync IM, instead of user name SIP address is displayed.

    Lync: User name of instant message.
    When there is call on Lync IM, instead of user name SIP address([email protected]) is displayed on Office365.
    In February I was guided that it was temporary problem, however again there is problem that SIP address is displaying all the time.
    Inquiry content are mentioned in separate sheet ■SIP address is displayed when IM is called, is it specific, however if one can view user name, Let me know the best way and please confirm this.
    Thanks in Advance.

    I'd ask them over here.
    http://social.technet.microsoft.com/Forums/lync/en-US/home?category=lync
    Regards, Dave Patrick ....
    Microsoft Certified Professional
    Microsoft MVP [Windows]
    Disclaimer: This posting is provided "AS IS" with no warranties or guarantees , and confers no rights.

  • Why does my viewing window display the address instead of names?

    I have been using mail for a while. I notice that even after I add a contact to the address book and input their name, incoming mail still displays in the main window with their address instead of their name?
    I would much rather be able to recognize the name of the sender before I open the mail. How can I set this up?

    I have sort of another similar curious occurance: I have entries in my Address Book where most of them have multiple email addresses.
    By entering their first name or first few letters in a New Mail 'To' field etc, I choose the right email address I want to mail to; Some of my contacts would then appear as Names with the blue oval-rectangle shape behind the name, some other contacts would appear as Name <xxx@xxx> (the email address)
    Smart Address was turned on...
    Add this to "curiosity"
    Cheers

  • SM51 displays ip address instead of hostname

    Hi,
    We have built a dailog instance on Linux and In SM51 under the hostname column we are seeing the ip address instead of name of host. We tried setting the parameter SAPLOCALHOST in instance parameter of the dailog instance but we have no luck. Can some one help.
    Thanks in advance.

    Hi,
    Please Make an Entry of host name of Application Servers in the /etc/hosts file of all (CI & DI) servers, Ensure that there will not be duplicate entries in the  /etc/hosts file it may conflict the host name issues.
    Regards,
    Jeeva

  • Can I append to IIS log files with jsp?

    When we added a load balancer, our IIS logs started using its IP address in the logfile and not the client's real IP address.
    I need to add the client's real address back into the IIS logs, so our
    reports can restart having the correct session numbers.
    Does anyone know how to do this in JSP?
    I've found snippets of code that says it does this, but I'm not sure where to put the code.
    <% Response.AppendToLog "client_IP" %>
    I tried putting this in my .jsp file and it doesn't know about Response.
    I find reference to Response in the asp API, but not in the jsp API.
    AppendToLog appends this data to the URI Query field of the IIS Log.
    We are using IIS5.0.
    Sue Damitz

    Hi Jonny,
    I don't think it can be done the way you've suggested, however you can accomplish the same thing in a different way.
    Go to System Preferences > Security > General and select 'Require Password Immediately after sleep or screensaver begins'
    Then go into Energy Saver and set your Display sleep to 1 min OR go to Desktop and Screensaver and set the screensaver time to 3 mins.
    That way, once your display goes to sleep or into screen saver it will require a password to resume. This will keep the music playing in the background and also has the added benefit of displaying iTunes album artwork as the screensaver (if that's the screensaver you have selected!)

  • Content Switch replacing Client IP in IIS Logs

    Hello Guys,
    I have been facing this problem ever since we configured our content switch infront of our web server. The IIS logs in the web server now show the content switch IP in the 'c-ip' column.
    Below is configuration for the website:
    service GlobalInv
      port 80
      protocol tcp
      ip address 172.21.21.31
      active
    owner GlobalWebSite
      content GlobalInv-http
        vip address 172.21.21.52
        add service GlobalInv
        port 80
        protocol tcp
        advanced-balance sticky-srcip
        active
    group GlobalInv
      vip address 172.21.21.52
      add destination service GlobalInv
      active
    Can someone please help me tellin as to how I can have the actual client IP addresses shown in my IIS logs instead of the content switch IP.
    Please this is very important to us.

    Thanks Jim,
    I am sorry but am not an export in CCS, it would be a great help to me if you can instruct me on how I can actually achieve this.
    I have already set the default gateway of my web server to the Content switch.
    My topology is quite simple, both the content switch & the web server are in the DMZ zone (same subnet) and are connected to the same switch. Users from outside & inside the company access our corporate website through the content switch
    Below is the configuration of my content switch (with the related config marked in red):
    CSS-GLOBAL# sh runn
    !Generated on 10/26/2010 23:14:04
    !Active version: sg0810106
    configure
    !*************************** GLOBAL ***************************
      dns primary 172.21.1.13
      dns secondary 192.168.0.50
      ssl associate rsakey eglobal eglobal.pem
      ssl associate cert eglobal-selfsigned eglobal.selfsigned.pem
      ssl associate rsakey glopedia glopedia.pem
      ssl associate cert glopedia glopedia.selfsigned.pem
      ssl associate cert eglobal-versign e-global-verisign.pem
      ssl associate cert glopedia-verisign glopedia-verisign.pem
      ssl associate cert EGlobal-Web EGlobal-Web.pem
      ssl associate cert EGlobal-Web-Chain EGlobal-Web.pem
      ssl associate cert Glopedia-Web-Chain Glopedia-Web.pem
      ftp-record conf 172.16.143.43 shahim des-password 1bnc2hnduhmgjend /
      ip route 0.0.0.0 0.0.0.0 172.21.21.1 1
      ip route 172.21.1.0 255.255.255.0 172.21.21.4 1
      ip route 172.16.0.0 255.255.0.0 172.21.21.4 1
      ip route 192.168.0.0 255.255.255.0 172.21.21.4 1
    !************************* INTERFACE *************************
    interface e1
      description "To Global Switch Foundary"
    !************************** CIRCUIT **************************
    circuit VLAN1
      ip address 172.21.21.49 255.255.255.0
    !*********************** SSL PROXY LIST ***********************
    ssl-proxy-list SSL-Proxy-List
      ssl-server 51
      ssl-server 51 rsakey eglobal
      ssl-server 51 vip address 172.21.21.51
      ssl-server 51 cipher rsa-with-rc4-128-md5 172.21.21.51 80 weight 10
      ssl-server 51 cipher rsa-with-rc4-128-sha 172.21.21.51 80 weight 8
      ssl-server 51 cipher rsa-export-with-rc4-40-md5 172.21.21.51 80 weight 5
      ssl-server 50
      ssl-server 50 rsakey glopedia
      ssl-server 50 vip address 172.21.21.50
      ssl-server 50 cipher rsa-with-rc4-128-md5 172.21.21.50 80 weight 10
      ssl-server 50 cipher rsa-with-rc4-128-sha 172.21.21.50 80 weight 8
      ssl-server 50 cipher rsa-export-with-rc4-40-md5 172.21.21.50 80 weight 5
      ssl-server 50 urlrewrite 1 *
      ssl-server 51 urlrewrite 1 *
      ssl-server 51 rsacert EGlobal-Web-Chain
      ssl-server 50 rsacert Glopedia-Web-Chain
      active
    !************************** SERVICE **************************
    service E-Global-https
      ip address 172.21.21.32
      port 80
      protocol tcp
      active
    service Ghalia
      port 81
      protocol tcp
      ip address 172.21.21.31
      active
    service GlobalInv
      port 80
      protocol tcp
      ip address 172.21.21.31
      active
    service dms
      ip address 172.21.1.115
      port 80
      protocol tcp
      keepalive type http
      active
    service eglobal-http
      port 80
      protocol tcp
      ip address 172.21.21.32
      keepalive type http
      active
    service email
      ip address 172.21.1.122
      port 80
      protocol tcp
      keepalive type http
      active
    service email123
      ip address 172.21.1.123
      port 80
      protocol tcp
      keepalive type http
      active
    service glopedia
      ip address 192.168.2.32
      port 80
      protocol tcp
      active
    service glopedia-expapps
      ip address 192.168.2.32
      port 4028
      protocol tcp
      active
    service secure-transfer
      type redirect
      no prepend-http
      ip address 172.21.21.32
      keepalive type none
      domain https://www.e-global.com.kw
      active
    service ssl-eglobal
      type ssl-accel
      keepalive type none
      slot 2
      add ssl-proxy-list SSL-Proxy-List
      active
    service workflow
      ip address 172.21.21.44
      port 80
      protocol tcp
      keepalive type http
      active
    !*************************** OWNER ***************************
    owner EGlobal
      content eglobal-http
        vip address 172.21.21.51
        no persistent
        protocol tcp
        port 80
        url "/*"
        add service eglobal-http
        active
      content eglobal-https
        vip address 172.21.21.51
        protocol tcp
        port 443
        add service ssl-eglobal
        active
    owner GhaliaWebSite
      content Ghalia-http
        vip address 172.21.21.53
        add service Ghalia
        protocol tcp
        port 80
        active
    owner GlobalWebSite
      content GlobalInv-http
        vip address 172.21.21.52
        add service GlobalInv
        port 80
        protocol tcp
        advanced-balance sticky-srcip
        active
    owner Glopedia
      content bpmweb
        vip address 172.21.21.50
        url "/workflow"
        protocol tcp
        port 80
        redirect "/bpmweb"
        active
      content cyberdocs
        vip address 172.21.21.50
        add service dms
        protocol tcp
        port 80
        url "/CyberDocs*"
        active
      content dms
        vip address 172.21.21.50
        url "/dms*"
        redirect "/CyberDocs"
        protocol tcp
        port 80
        active
      content email
        vip address 172.21.21.50
        no persistent
        url "/email"
        protocol tcp
        port 80
        redirect "/owa"
        active
      content glopedia-expapps
        vip address 172.21.21.50
        add service glopedia-expapps
        no persistent
        port 4028
        protocol tcp
        active
      content glopedia-http
        vip address 172.21.21.50
        add service glopedia
        no persistent
        protocol tcp
        port 80
        url "/*"
        active
      content glopedia-https
        vip address 172.21.21.50
        add service ssl-eglobal
        protocol tcp
        port 443
        active
      content owa
        vip address 172.21.21.50
        add service email123
        protocol tcp
        port 80
        url "/owa*"
        active
      content workflow
        vip address 172.21.21.50
        add service workflow
        no persistent
        protocol tcp
        port 80
        url "/bpmweb*"
        active
    !*************************** GROUP ***************************
    group Ghalia
      vip address 172.21.21.53
      add destination service Ghalia
      active
    group GlobalInv
      vip address 172.21.21.52
      add destination service GlobalInv
      active
    group dms
      vip address 172.21.21.50
      add destination service dms
      add destination service email
      add destination service workflow
      add destination service glopedia
      add destination service email123
      add destination service glopedia-expapps
      active
    group eglobal
      vip address 172.21.21.51
      add destination service eglobal-http
      active

Maybe you are looking for