Dear List, i found a solution (technique) which should be working (what i need). For Port 7343 in this case. With 443 it is still working.
Its called "SSL/TLS bridging" Or re-encryption. Client <-TCP-> ZEN <-TCP-> vCenter |___________________________| SSL-Traffic ZEN provides its own official certificate while vCenter has its self-signed. And ZEN should not validate the vCenter cert... For Port 7343. The later can be done with TCP. Is such a solution possible with ZEN? If so, how? Thx a lot in advance! Best, Timo ----- Original Message ----- > Dear List, > > we upgraded last week our VCSA from 5.5U2 to 5.5U3 (latest). > VCSA is located in a 10.1.1.12 range, with default certs etc. > Directly after the upgrade, our console-sessions were not working anymore. > > A direct connection between VCSA and Client works very well. So it is a > problem related > to the Loadbalancer. > > Our ZenLB (since today 3.10.1, new install and restore of backup) is located > in with one interface, and one public IP for our customers and an official > certificate. > > We have two HTTPS Farms on the ZenLB. > a) 443 with the backend (real server) 10.1.1.12, Port 9443 (vsphere-client) > b) 7343 with the backend (real server) 10.1.1.12, Port 7343 (console) > > We are as before able to communicate with the vspere-client over 443 to 9443. > But we are not able to get the console sessions over 7343 to work. > > With tcpdump we are seeing acks from the ZenLB to the vCenter, then it seems > like timeouts, > and then some reset. After that the session is lost/disconnted. Every > time.... > > Has anybody any idea how to troubleshoot? And/or using maybe something > similar and is willing > to share the config/details? > > Thx a lot in advance! > > > > -- > > Best > > Timo > > > ---------------------------------------------------- > Timo Scheller > Hochschul-IT-Zentrum (HIZ) > > Universität des Saarlandes > Campus E1_2 (Büro 0.12) > D-66123 Saarbrücken > > Tel: +4968130270626 > Fax: +496813024462 > Tel-HR: +49 (0)681/302-70626 > Fax-HR: +49 (0)681/302-4462 > E-Mail: timo.schel...@hiz-saarland.de > Internet: http://www.hiz-saarland.de > ---------------------------------------------------- > > ------------------------------------------------------------------------------ > Find and fix application performance issues faster with Applications Manager > Applications Manager provides deep performance insights into multiple tiers > of > your business applications. It resolves application problems quickly and > reduces your MTTR. Get your free trial! > https://ad.doubleclick.net/ddm/clk/302982198;130105516;z > _______________________________________________ > Zenloadbalancer-support mailing list > Zenloadbalancer-support@lists.sourceforge.net > https://lists.sourceforge.net/lists/listinfo/zenloadbalancer-support > -- Beste Grüße Timo Scheller ---------------------------------------------------- Timo Scheller Hochschul-IT-Zentrum (HIZ) Universität des Saarlandes Campus E1_2 (Büro 0.12) D-66123 Saarbrücken Tel: +4968130270626 Fax: +496813024462 Tel-HR: +49 (0)681/302-70626 Fax-HR: +49 (0)681/302-4462 E-Mail: timo.schel...@hiz-saarland.de Internet: http://www.hiz-saarland.de ---------------------------------------------------- ------------------------------------------------------------------------------ Find and fix application performance issues faster with Applications Manager Applications Manager provides deep performance insights into multiple tiers of your business applications. It resolves application problems quickly and reduces your MTTR. Get your free trial! https://ad.doubleclick.net/ddm/clk/302982198;130105516;z _______________________________________________ Zenloadbalancer-support mailing list Zenloadbalancer-support@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/zenloadbalancer-support