Note: Depending on your deployment, you might need to enable L2 mode on the NetScaler appliance.
Transparent SSL acceleration is useful for running multiple applications on a secure server with the same public IP. It is also useful for SSL acceleration without using an extra public IP.
In a transparent SSL acceleration setup, the NetScaler appliance is transparent to the client. It is transparent because the IP address at which the appliance receives requests is the same as the web server's IP address.
The NetScaler appliance offloads SSL traffic processing from the Web server and sends either clear text or encrypted traffic (depending on the configuration) to the web server. All other traffic is transparent to the appliance and is bridged to the Web server. Therefore, other applications running on the server are unaffected.
There are three modes of transparent SSL acceleration available on the appliance:
-
Service-based transparent access, where the service type can be SSL or SSL_TCP.
-
Virtual server-based transparent access with a wildcard IP address (*:443).
-
SSL VIP-based transparent access with end-to-end encryption.
Note: An SSL_TCP service is used for non-HTTPS services (for example SMTPS and IMAPS).