This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

WAF (Certificate needed) and translation to another port. Possible?

Hi there,

i got an installation sheet from a service that integrates audio conference in Skype 4 Business on premise.

As you can see the request starts at 443 and ends with 4453. Is it possible to achieve that with WAF (and NAT).

I already saw that i can use DNAT. But then i have no (trusted) certificate because the domain name differs (split dns). 

I tried to set up a real webserver with the HTTPS 4453 port and use WAF with a new Virtual Webserver and pass host header. This does not seem to work. I installed a listener programm on the server to see any requests.

The firewall on this server (windows firewall) does not log anything but this seems to be another problem.Anyone configuried this with WAF? I don't want to install a Win 2012 R2 IIS ARR to achieve this task.

Best regards

Stephan



This thread was automatically locked due to age.
Parents
  • Hi Stephan,

    Configure Virtual Web Server to listen on Encrypted 443 and alongside, the Real Web Server with Plain Text / Port 4453. I would recommend you a fresh configuration so we are not missing anything. Later, check in the reverproxy.log and post the logs for our reference.

    Thanks

    Sachin Gurung
    Team Lead | Sophos Technical Support
    Knowledge Base  |  @SophosSupport  |  Video tutorials
    Remember to like a post.  If a post (on a question thread) solves your question use the 'This helped me' link.

Reply
  • Hi Stephan,

    Configure Virtual Web Server to listen on Encrypted 443 and alongside, the Real Web Server with Plain Text / Port 4453. I would recommend you a fresh configuration so we are not missing anything. Later, check in the reverproxy.log and post the logs for our reference.

    Thanks

    Sachin Gurung
    Team Lead | Sophos Technical Support
    Knowledge Base  |  @SophosSupport  |  Video tutorials
    Remember to like a post.  If a post (on a question thread) solves your question use the 'This helped me' link.

Children