# HTTPS on the backend

**URL:** <https://community.a10networks.com/t/https-on-the-backend/471>\
**Category:** ADC - Application Delivery\
**Created:** [September 28, 2017, 8:13am UTC](https://community.a10networks.com/t/https-on-the-backend/471 "2017-09-28T08:13:00Z")\
**Posts on this page:** 5\
**Page:** 1

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/flex002/uploads/a10_community/original/1X/bb9f186d33804d3044a0374e589f49fdf3be1328.png) [@system](https://community.a10networks.com/u/system)\
**Post date:** [September 28, 2017, 8:13am UTC](https://community.a10networks.com/t/https-on-the-backend/471/1 "2017-09-28T08:13:00Z")

</div>

Dear all,  
I know that what I’m going to ask is not technically clean or correct, but I want to know if the possibilty exists. At the moment I have a vThunder version 2.7.2-P10 who is doing SSL offload for my applications and balance on the backend over different HTTP ports. Suppose that instead of HTTP I need to balance on the backend over HTTPS but not in plain mode. Instead I want to balance with full SSL handshake but with another certificate different from the one used on the frontend. Is that possible?

Thanks

Luca

---

<div class="post-metadata">

**Author:** ![mmartinez\_a10networks.com](https://avatars.discourse-cdn.com/v4/letter/m/d07c76/32.png) [@mmartinez\_a10networks.com](https://community.a10networks.com/u/mmartinez_a10networks.com)\
**Post date:** [September 28, 2017, 8:18am UTC](https://community.a10networks.com/t/https-on-the-backend/471/2 "2017-09-28T08:18:13Z")

</div>

Hi Luca,

Sure, you just need to specify a ServerSsl template into your Vport.  
Regards

---

<div class="post-metadata">

**Author:** ![diederik](https://avatars.discourse-cdn.com/v4/letter/d/a587f6/32.png) [@diederik](https://community.a10networks.com/u/diederik)\
**Post date:** [September 28, 2017, 8:20am UTC](https://community.a10networks.com/t/https-on-the-backend/471/3 "2017-09-28T08:20:31Z")

</div>

Hello,

Have a look at the options in the “Server SSL Template”.  
Where a service with only a “Client SSL Template” does SSL-Offload, adding a “Server SSL Template” will do SSL-Onloading to the server as well.  
Greetings,

Diederik

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/flex002/uploads/a10_community/original/1X/bb9f186d33804d3044a0374e589f49fdf3be1328.png) [@system](https://community.a10networks.com/u/system)\
**Post date:** [September 28, 2017, 12:53pm UTC](https://community.a10networks.com/t/https-on-the-backend/471/4 "2017-09-28T12:53:50Z")

</div>

Hi guys and thank you for your answers. So I should create a server SSL Template with the certificate proposed by the backend server and apply it on the HTTPS VIP? I guess then I need to put the https port on the service group am I right?

Luca

---

<div class="post-metadata">

**Author:** ![pinla11](https://avatars.discourse-cdn.com/v4/letter/p/e47c2d/32.png) [@pinla11](https://community.a10networks.com/u/pinla11)\
**Post date:** [March 8, 2019, 4:35pm UTC](https://community.a10networks.com/t/https-on-the-backend/471/5 "2019-03-08T16:35:02Z")

</div>

Hello,

I have a similiar configuration but in my case I want to use the same certificate in both sides. Same for clients that for the backend servers.

How can I do that?

Thanks in advance
