Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Nice thing about ssl termination with haproxy is that in that case, since the backend is http, it can make active http health checks. If this check determines a backend has failed, it can be taken out of rotation.

With nginx doing ssl termination, haproxy is just tcp passthrough so it only does passive health checks (ie. it can notice when the backend doesn't respond properly), but that means the current http request has failed.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: