Jump to content
Welcome to our new Citrix community!

CIC ssl annotations have no effect on VPX CS/VS configuration and lbserver

Recommended Posts



We need this scenario:  CLIENT -->https-->ADC VPX -->http-->app ingress (k8s)


We configured yaml for application ingress and declare this annotations:


ingress.citrix.com/secure-port: "443"
ingress.citrix.com/secure-service-type: "ssl_tcp"

ingress.citrix.com/lbvserver: '{"citrix-svc":{"servicetype":"ssl"}}'


kubectl apply -f application-ingres.yaml returns all is ok, but in VPX we always see that the CS VS is configured in http on port 80 (default values). And LB VS is in HTTP too.


Reading annotations docs in https://developer-docs.citrix.com/projects/citrix-k8s-ingress-controller/en/latest/configure/annotations/


Seems that the three annotations have no effect in VPX configuration via CIC.


Any ideas?


This is the yaml:


apiVersion: networking.k8s.io/v1beta1
kind: Ingress
 name: ivisual-merchand-ingress
 namespace: istio-system
   kubernetes.io/ingress.class: "citrix"
   ingress.citrix.com/frontend-ip: ""
   ingress.citrix.com/secure-port: "443"
   ingress.citrix.com/secure-service-type: "ssl"

   ingress.citrix.com/lbvserver: '{"citrix-svc":{"servicetype":"ssl"}}'
   ingress.citrix.com/servicegroup: '{"citrix-svc":{"usip":"yes"}}'
 - host: ivmc.mango.com
     - path:
          serviceName: istio-ingressgateway
          servicePort: 80


I attached the log file from cic


Thanks in advanced.


Link to comment
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Create New...