Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login
    Introducing Netgate Nexus: Multi-Instance Management at Your Fingertips.

    Is it possible to have two different shared front-ends with different types?

    Scheduled Pinned Locked Moved Cache/Proxy
    1 Posts 1 Posters 161 Views 3 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • Y Offline
      yobyot
      last edited by

      Way back in time, I set up HAProxy to use TCP passthrough via a "shared" front end to multiple back-end domain servers. I call it shared but the "shared" front end setting is not set.

      That pseudo shared front end is of type ssl/https (TCP mode).

      Yes, I know that doesn't use HAProxy "correctly" since it doesn't offload TLS processing to the proxy.

      Now, I have a new domain for which I would like to offload TLS processing. No problem, you might think: just add a new front end of type http/https (offloading) for that domain.

      The rub is that I want that new domain to also be proxied on inbound TCP 443 which the existing "shared" front end already listens on.

      My question is, is there any way to add a second front end of a different type that listens on an existing HAProxy front end port?

      I think the answer is no -- but in case there's something I haven't thought of...

      FWIW, I cannot switch the current front end to offloading due to backend server requirements.

      Maybe this screenshot will explain better what I would like to acheive.

      2026-01-11_07-18-02.png

      1 Reply Last reply Reply Quote 0
      • First post
        Last post
      Copyright 2026 Rubicon Communications LLC (Netgate). All rights reserved.