The following are the steps involved and the recommended settings to configure the ShareFile HTTPS Re-encrypt Virtual Service:

  1. In the main menu of the LoadMaster WUI, go to Virtual Services > Add New.

  2. Type a valid Virtual Address.
  3. Type 443 as the Port.
  4. Enter a recognizable Service Name, such as ShareFile HTTPS Re-encrypted.
  5. Click Add this Virtual Service.
  6. Configure the settings as recommended in the following table:
    WUI Section WUI Field Name WUI Field Value
    Port 443
    Protocol tcp
    Basic Properties Service Type HTTP-HTTP/2-HTTPS
    Standard Options Transparency Disabled
    Subnet Originating Requests Enabled
    Persistence Options None
    Scheduling Method least connection
    Idle Connection Timeout 660 (Default)
    SSL Properties SSL Acceleration Enabled
    Reencrypt Enabled
    Supported Protocols TLS1.1, TLS1.2, and TLS1.3 (Enabled)
    Cipher Set BestPractices
    TLS1.3 Ciphersets TLS_AES_256_GCM_SHA384, TLS_CHACHA20_POLY1305_SHA256, and TLS_AES_128_GCM_SHA256
    Note: As of version 6 of ShareFile, TLS 1.3 is not in use.
  7. Add the Real Servers:
  8. Expand the Real Servers section.
  9. Click Add New.
    1. Enter the address of the relevant Real Server.
    2. Complete the other fields as required.
    3. Click Add this Real Server then click OK to the pop-up message.
    4. Repeat the steps above to add more Real Servers as needed, based on your environment.

Create a ShareFile HTTPS Re-encrypted Redirect Virtual Service

Clicking Add HTTP Redirector (in Advanced Properties) automatically creates a port 80 redirect Virtual Service. This is optional, but the purpose of this Virtual Service is to redirect any clients who have connected using HTTP to the HTTPS Virtual Service. We also recommend changing the Persistence Mode to None.