# \#aflex

**URL:** https://community.a10networks.com/tag/aflex/17.md

[Latest](https://community.a10networks.com/latest.md) · [Categories](https://community.a10networks.com/categories.md) · [Tags](https://community.a10networks.com/tags.md)

---

## [Is there for A10 a way to capture ssl session keys with a aflex script?](https://community.a10networks.com/t/is-there-for-a10-a-way-to-capture-ssl-session-keys-with-a-aflex-script/1085)

<div class="topic-metadata">

**Author:** [@Nikoolayy1](https://community.a10networks.com/u/Nikoolayy1)\
**Replies:** 1\
**Last updated:** [March 16, 2026, 7:24pm UTC](https://community.a10networks.com/t/is-there-for-a10-a-way-to-capture-ssl-session-keys-with-a-aflex-script/1085 "2026-03-16T19:24:35Z")

</div>

Hello All, On F5 that we use there is an option to capture SSL session keys for when you need to decrypt a wireshark capture. Is there for A10 a way to capture ssl session keys with a aflex script ?

---

## [How to inject Server Name Extension (SNI) on server-side based on HTTP Host by Aflex？](https://community.a10networks.com/t/how-to-inject-server-name-extension-sni-on-server-side-based-on-http-host-by-aflex/885)

<div class="topic-metadata">

**Author:** [@Miyuko](https://community.a10networks.com/u/Miyuko)\
**Replies:** 5\
**Last updated:** [March 11, 2025, 9:27am UTC](https://community.a10networks.com/t/how-to-inject-server-name-extension-sni-on-server-side-based-on-http-host-by-aflex/885 "2025-03-11T09:27:06Z")

</div>

We are replacing the F5 load balancer. Could you please let me know how to implement this iRule using aflex or other methods? he client request SSL packet header does not contain SNI, and it needs to be extracted from t…

---

## [How to inject Server Name Extension (SNI) on server-side based on HTTP Host](https://community.a10networks.com/t/how-to-inject-server-name-extension-sni-on-server-side-based-on-http-host/884)

<div class="topic-metadata">

**Author:** [@Miyuko](https://community.a10networks.com/u/Miyuko)\
**Replies:** 0\
**Last updated:** [December 24, 2024, 3:02am UTC](https://community.a10networks.com/t/how-to-inject-server-name-extension-sni-on-server-side-based-on-http-host/884 "2024-12-24T03:02:04Z")

</div>

We are replacing the F5 load balancer. Could you please let me know how to implement this iRule using aflex or other methods? he client request SSL packet header does not contain SNI, and it needs to be extracted from t…

---

## [How to perform a case-insensitive match of the requested URL path.](https://community.a10networks.com/t/how-to-perform-a-case-insensitive-match-of-the-requested-url-path/863)

<div class="topic-metadata">

**Author:** [@anfovar](https://community.a10networks.com/u/anfovar)\
**Replies:** 1\
**Last updated:** [August 8, 2024, 6:53pm UTC](https://community.a10networks.com/t/how-to-perform-a-case-insensitive-match-of-the-requested-url-path/863 "2024-08-08T18:53:01Z")

</div>

Hello, How can I perform a case-insensitive match for the requested URL path? For example: when HTTP\_REQUEST { if { \[HTTP::path\] equals “/NotificationServer” } { pool example\_service-group } } And a case-sensitive…

---

## [Aflex inside another Aflex](https://community.a10networks.com/t/aflex-inside-another-aflex/849)

<div class="topic-metadata">

**Author:** [@anfovar](https://community.a10networks.com/u/anfovar)\
**Replies:** 1\
**Last updated:** [May 22, 2024, 9:45pm UTC](https://community.a10networks.com/t/aflex-inside-another-aflex/849 "2024-05-22T21:45:34Z")

</div>

Hi I wonder if it is possible to use an Aflex inside another Aflex, for example when HTTP\_RESPONSE { if { \[HTTP::status\] == 404 } { Aflex “ERROR-404” } } is this possible? Regards

---

## [slb template persist cookie template as command Aflex](https://community.a10networks.com/t/slb-template-persist-cookie-template-as-command-aflex/850)

<div class="topic-metadata">

**Author:** [@anfovar](https://community.a10networks.com/u/anfovar)\
**Replies:** 0\
**Last updated:** [May 22, 2024, 5:48pm UTC](https://community.a10networks.com/t/slb-template-persist-cookie-template-as-command-aflex/850 "2024-05-22T17:48:50Z")

</div>

How can I call an slb template persist cookie template as command in an HTTP event For example: when CLIENT\_ACCEPTED { if { \[IP::addr \[IP::client\_addr\] equals 192.168.1.10\] } { pool example\_server\_group SLB slb temp…

---

## [Snat in NHLD with alternate server](https://community.a10networks.com/t/snat-in-nhld-with-alternate-server/828)

<div class="topic-metadata">

**Author:** [@anfovar](https://community.a10networks.com/u/anfovar)\
**Replies:** 2\
**Last updated:** [March 12, 2024, 5:39pm UTC](https://community.a10networks.com/t/snat-in-nhld-with-alternate-server/828 "2024-03-12T17:39:31Z")

</div>

Hi I have this scenario in a client´s infrastructure where they have 2 Internet links in active pasive mode slb server LINK-1 20.20.20.1 alternate LINK-2 port 0 tcp port 0 udp slb server LINK-2 30.30.30.1 port 0…

---

## [Redirect traffic based on Destination IP](https://community.a10networks.com/t/redirect-traffic-based-on-destination-ip/823)

<div class="topic-metadata">

**Author:** [@anfovar](https://community.a10networks.com/u/anfovar)\
**Replies:** 1\
**Last updated:** [February 8, 2024, 8:48pm UTC](https://community.a10networks.com/t/redirect-traffic-based-on-destination-ip/823 "2024-02-08T20:48:28Z")

</div>

Hi guys I´m trying to redirect traffic based on destination IP using an Aflex, for example if a internal user sends traffic to 20.20.20.20 the A10 will redirect the traffic to a specified service group Aflex: Test #1 …

---

## [Stop Processing of Subsequent aFleX Rules](https://community.a10networks.com/t/stop-processing-of-subsequent-aflex-rules/791)

<div class="topic-metadata">

**Author:** [@jshifletmillimaneb](https://community.a10networks.com/u/jshifletmillimaneb)\
**Replies:** 1\
**Last updated:** [August 17, 2023, 8:26pm UTC](https://community.a10networks.com/t/stop-processing-of-subsequent-aflex-rules/791 "2023-08-17T20:26:27Z")

</div>

Does anyone know if it’s possible to have an aFleX rule that stops processing of subsequent aFleX rules that are attached to a virtual server? For instance, say I create an aFleX rule named “DontAllowIfBadIP” that has a…

---

## [HTTP Origin header not matching the base\_url.](https://community.a10networks.com/t/http-origin-header-not-matching-the-base-url/777)

<div class="topic-metadata">

**Author:** [@anilperumandla](https://community.a10networks.com/u/anilperumandla)\
**Replies:** 7\
**Last updated:** [July 25, 2023, 12:41pm UTC](https://community.a10networks.com/t/http-origin-header-not-matching-the-base-url/777 "2023-07-25T12:41:35Z")

</div>

Wedsite owner getting below error related to revrse proxy header below is te aFLEX rule which we had added on on A10, do we required any addition rules to this work ?? X-Forward ?? when HTTP\_REQUEST { set URI \[str…

---

## [A10 vThunder ADC/SLB - Redirection based on URL](https://community.a10networks.com/t/a10-vthunder-adc-slb-redirection-based-on-url/775)

<div class="topic-metadata">

**Author:** [@wtegga10](https://community.a10networks.com/u/wtegga10)\
**Replies:** 3\
**Last updated:** [May 9, 2023, 6:12pm UTC](https://community.a10networks.com/t/a10-vthunder-adc-slb-redirection-based-on-url/775 "2023-05-09T18:12:03Z")

</div>

Hello, I will try to do more research to see if this was already covered in another post, but so far haven’t been able to find exactly what I’m looking for. Is it possible to do a redirect based on which URL the end u…

---

## [Persistence issue with aflex](https://community.a10networks.com/t/persistence-issue-with-aflex/702)

<div class="topic-metadata">

**Author:** [@leburton](https://community.a10networks.com/u/leburton)\
**Replies:** 1\
**Last updated:** [October 13, 2022, 7:19pm UTC](https://community.a10networks.com/t/persistence-issue-with-aflex/702 "2022-10-13T19:19:53Z")

</div>

Hi, I have a very simple script handling redirection to an outage server if my primary servers aren’t available (see below). I have however got an issue that when persistence is applied (source-ip or cookie persistence),…

---

## [F5 automap feature](https://community.a10networks.com/t/f5-automap-feature/739)

<div class="topic-metadata">

**Author:** [@Arturo](https://community.a10networks.com/u/Arturo)\
**Replies:** 4\
**Last updated:** [August 3, 2022, 8:29am UTC](https://community.a10networks.com/t/f5-automap-feature/739 "2022-08-03T08:29:28Z")

</div>

Hi, I have one F5 with irule contain “automap snat”, this functionality allows changing the IP when the destination is local to one of the F5 in order to prevent asymmetric routing. The automap options tells to BIG-IP to…

---

## [Retrieve the highest number of requests](https://community.a10networks.com/t/retrieve-the-highest-number-of-requests/730)

<div class="topic-metadata">

**Author:** [@waiwaileung](https://community.a10networks.com/u/waiwaileung)\
**Replies:** 0\
**Last updated:** [June 22, 2022, 8:32am UTC](https://community.a10networks.com/t/retrieve-the-highest-number-of-requests/730 "2022-06-22T08:32:01Z")

</div>

If I want to add one more rule which is to black list the highest number of DNS query when the total number of DNS queries exceed the threshold value (i.e. $totalcount). How can I retrieve the IP address which has the hi…

---

## [Block harmful traffic or attack via Websocket traffic](https://community.a10networks.com/t/block-harmful-traffic-or-attack-via-websocket-traffic/725)

<div class="topic-metadata">

**Author:** [@Alden](https://community.a10networks.com/u/Alden)\
**Replies:** 0\
**Last updated:** [May 26, 2022, 2:06am UTC](https://community.a10networks.com/t/block-harmful-traffic-or-attack-via-websocket-traffic/725 "2022-05-26T02:06:15Z")

</div>

Hi Experts, We have a web server is running some services via Websocket traffic. Now we want to block harmful traffic, attacks like SQL Injection, XSS… like the WAF template works with HTTP traffic, but now is WebSocke…

---

## [How to use the a10.acos\_axapi.a10\_file\_aflex module in Ansible](https://community.a10networks.com/t/how-to-use-the-a10-acos-axapi-a10-file-aflex-module-in-ansible/659)

<div class="topic-metadata">

**Author:** [@AC2000](https://community.a10networks.com/u/AC2000)\
**Replies:** 0\
**Last updated:** [June 14, 2021, 12:33pm UTC](https://community.a10networks.com/t/how-to-use-the-a10-acos-axapi-a10-file-aflex-module-in-ansible/659 "2021-06-14T12:33:16Z")

</div>

Hello, I am trying to deploy aflex scripts to an a10 load balancer in Ansible with the a10\_file\_aflex python module in the a10.acos\_axapi Ansible collection. However, everytime I run my script, there are some weird err…

---

## [aFlex script to filter URL](https://community.a10networks.com/t/aflex-script-to-filter-url/639)

<div class="topic-metadata">

**Author:** [@Nathaneil0277](https://community.a10networks.com/u/Nathaneil0277)\
**Replies:** 3\
**Last updated:** [February 20, 2021, 3:50am UTC](https://community.a10networks.com/t/aflex-script-to-filter-url/639 "2021-02-20T03:50:51Z")

</div>

Hi experts do you have aFlex script to filter the URL that the users are trying to reach to the internet. Basically, I have AC type class-list and URLs are configured on it. Once I have verified in aFlex that the URL wh…

---

## [DNS CAA record response](https://community.a10networks.com/t/dns-caa-record-response/642)

<div class="topic-metadata">

**Author:** [@mcyork](https://community.a10networks.com/u/mcyork)\
**Replies:** 1\
**Last updated:** [January 19, 2021, 6:48pm UTC](https://community.a10networks.com/t/dns-caa-record-response/642 "2021-01-19T18:48:58Z")

</div>

I am doing things like this: set rr1 \[DNS::rr $name 0 IN TXT “some text here”\] DNS::answer insert $rr1 Now I need to return a CAA record and can’t find a way to format the entry to do this. A CAA record looks like th…

---

## [Preserve Port on HTTP Redirect](https://community.a10networks.com/t/preserve-port-on-http-redirect/572)

<div class="topic-metadata">

**Author:** [@gprintz](https://community.a10networks.com/u/gprintz)\
**Replies:** 1\
**Last updated:** [July 14, 2020, 7:05pm UTC](https://community.a10networks.com/t/preserve-port-on-http-redirect/572 "2020-07-14T19:05:22Z")

</div>

Hi Everyone: We have an interesting issue we’re trying to tackle. We have a Virtual Server with multiple virtual ports (http:80, https:443, https:4444, https:4445, etc). We currently have a working redirect script (si…

---

## [is aflex has similar features like lb::detach](https://community.a10networks.com/t/is-aflex-has-similar-features-like-lb-detach/601)

<div class="topic-metadata">

**Author:** [@edson0227](https://community.a10networks.com/u/edson0227)\
**Replies:** 1\
**Last updated:** [June 13, 2020, 4:30am UTC](https://community.a10networks.com/t/is-aflex-has-similar-features-like-lb-detach/601 "2020-06-13T04:30:10Z")

</div>

Hello everyone, we are trying migrate from F5 to A10, but we encountered some problems there is part of our using irule , when HTTP\_REQUEST { if { \[string tolower \[HTTP::uri\]\] starts\_with “/aaa/bbb/ccc/” } { i…

---

## [How to separate write and read for sql database?](https://community.a10networks.com/t/how-to-separate-write-and-read-for-sql-database/600)

<div class="topic-metadata">

**Author:** [@huzhiqi](https://community.a10networks.com/u/huzhiqi)\
**Replies:** 4\
**Last updated:** [May 28, 2020, 1:41am UTC](https://community.a10networks.com/t/how-to-separate-write-and-read-for-sql-database/600 "2020-05-28T01:41:13Z")

</div>

I have four vm,it is three microsoft sql server 2012 and one microsoft AD,three sql sever auto synchronize date with always on mode. I want to separate write action and read action to different sql server,for example,If…

---

## [Monitoring via XML File GET](https://community.a10networks.com/t/monitoring-via-xml-file-get/512)

<div class="topic-metadata">

**Author:** [@shocko](https://community.a10networks.com/u/shocko)\
**Replies:** 2\
**Last updated:** [February 22, 2020, 1:03pm UTC](https://community.a10networks.com/t/monitoring-via-xml-file-get/512 "2020-02-22T13:03:14Z")

</div>

Hi guys, I have a web service that provides a URI that return XML indicating the health of the system. Is it possible to get this XML and parse it and make a load balancing decision based on this.

---

## [Aflex logic not taking precedence over session persit cookie](https://community.a10networks.com/t/aflex-logic-not-taking-precedence-over-session-persit-cookie/510)

<div class="topic-metadata">

**Author:** [@jpost](https://community.a10networks.com/u/jpost)\
**Replies:** 1\
**Last updated:** [October 30, 2019, 1:20pm UTC](https://community.a10networks.com/t/aflex-logic-not-taking-precedence-over-session-persit-cookie/510 "2019-10-30T13:20:56Z")

</div>

Hi, We have an aflex rule that redirects requests based on the url. There is also a persistence cookie set. The issue is when the url switches, the aflex logic should send the request to a new server pool, but the c…

---

## [an example of a DNS external health monitor](https://community.a10networks.com/t/an-example-of-a-dns-external-health-monitor/563)

<div class="topic-metadata">

**Author:** [@a10\_tm](https://community.a10networks.com/u/a10_tm)\
**Replies:** 1\
**Last updated:** [October 2, 2019, 11:13pm UTC](https://community.a10networks.com/t/an-example-of-a-dns-external-health-monitor/563 "2019-10-02T23:13:53Z")

</div>

Hi, Does anyone have an example of a DNS external health monitor? The monitor should query an A record and check the IP address and provide up/down status based on the IP address matching a given/set IP address. Thanks …

---

## [Logging URL redirection](https://community.a10networks.com/t/logging-url-redirection/536)

<div class="topic-metadata">

**Author:** [@pinla11](https://community.a10networks.com/u/pinla11)\
**Replies:** 1\
**Last updated:** [October 29, 2018, 1:44pm UTC](https://community.a10networks.com/t/logging-url-redirection/536 "2018-10-29T13:44:27Z")

</div>

I need to log the requests to some URLs that are redirected to another domain. I need to know if there’s still clients trying to access the OLD domain. I wrote an aFLEX to do this, and it works ok in my lab enviroment. I…

---

## [Redirect to other url](https://community.a10networks.com/t/redirect-to-other-url/529)

<div class="topic-metadata">

**Author:** [@gundam](https://community.a10networks.com/u/gundam)\
**Replies:** 10\
**Last updated:** [September 25, 2018, 7:17am UTC](https://community.a10networks.com/t/redirect-to-other-url/529 "2018-09-25T07:17:53Z")

</div>

Can we redirect to external url when all real servers failed health check.

---

## [A10 Thunder URL match statistics](https://community.a10networks.com/t/a10-thunder-url-match-statistics/519)

<div class="topic-metadata">

**Author:** [@pinla11](https://community.a10networks.com/u/pinla11)\
**Replies:** 1\
**Last updated:** [August 16, 2018, 3:06pm UTC](https://community.a10networks.com/t/a10-thunder-url-match-statistics/519 "2018-08-16T15:06:02Z")

</div>

Hello, is there a way to have the match statistics for a URL? I will like to have the number of time a site is visited. I have this in real time and I have the logs, but going through the logs each time is too long and t…

---

## [How to preserve the original source client IP using X-Forwarded-For or aFlex?](https://community.a10networks.com/t/how-to-preserve-the-original-source-client-ip-using-x-forwarded-for-or-aflex/507)

<div class="topic-metadata">

**Author:** [@mlmarcelo](https://community.a10networks.com/u/mlmarcelo)\
**Replies:** 14\
**Last updated:** [June 21, 2018, 7:07am UTC](https://community.a10networks.com/t/how-to-preserve-the-original-source-client-ip-using-x-forwarded-for-or-aflex/507 "2018-06-21T07:07:14Z")

</div>

Hi, I have done doing the aFlex or X-forwarded-for configurations for A10, but still the SNAT IP of ax1030 seen in the Bluecoat Proxy User IP list. Is configurations also needed on bluecoat to preserve the original sour…

---

## [A10 configuration Guide](https://community.a10networks.com/t/a10-configuration-guide/506)

<div class="topic-metadata">

**Author:** [@pinla11](https://community.a10networks.com/u/pinla11)\
**Replies:** 2\
**Last updated:** [June 14, 2018, 5:35pm UTC](https://community.a10networks.com/t/a10-configuration-guide/506 "2018-06-14T17:35:50Z")

</div>

Hello, I’m new working with ADC and logically also with A10 Network products. I’m having a hard work trying to understand what is configured and how it works. I just get four of them, no one here knows how it’s work or …

---

## [URL access restriction](https://community.a10networks.com/t/url-access-restriction/494)

<div class="topic-metadata">

**Author:** [@system](https://community.a10networks.com/u/system)\
**Replies:** 1\
**Last updated:** [March 15, 2018, 10:59am UTC](https://community.a10networks.com/t/url-access-restriction/494 "2018-03-15T10:59:56Z")

</div>

Hi all, I’m working on a vThunder 2.7.2-P10 that is publicing many URL form a single virtual IP. Now I need to deny access from some IPs only for some URLs (not for all). For example I have 3 sites: site1.example.com s…

[Next page](https://community.a10networks.com/tag/aflex/17.md?match_all_tags=true&page=1&tags%5B%5D=aflex)
