can't bind a rewrite to SSL_BRIDGE VIP type

Scenario -


a.domain.com - SSL_BRIDGE VIP on one netscaler in DMZ

-bound service is the b.domain.com VIP


b.domain.com - SSL_BRIDGE VIP on a different netscaler on trusted network

-bound services are 3 linux web servers


I need to be able to change host header to appear to backend web servers as b.domain.com but can't bind a rewrite to SSL_BRIDGE VIP type...or maybe there is a better way to do this. I basically want to allow an internal site to be accessible from outside but at the HTTP level, appear to be from the DNS name of the internal VIP...and the backend breaks if I'm not using SSL_BRIDGE.

By definition, with an SSL_BRIDGE vserver, the traffic IS NOT decrypted on the NetScaler and the NetScaler does not do SSL Termination, therefore it cannot do request or response modifications like rewrite.  Just basic load balancing and low-level filtering criteria with rseponder. No rewrite, cmp, or content switching is possible.


To do rewrites, you have to do SSL termination and your vserver/services have to be SSL/SSL or SSL/HTTP.



