Handling TLSconfiguraton between VAs and 2IQServices with a Load Balancer

Hello everyone,
in my environment I have 2 IQServices that are balanced by a Load Balancer. The point is : how I have to handle the TLS session that I want to establish? Can I have two different session for one VA-IQService communication? In the sense that there is one TLS session between VA and Load Balancer and another one sessione between VA and IQService. Or I have to establish only one TLS session and the load balancer balances the TLS traffic? Are both solutions feasible?

Hi @s_tartaglione

You have to point out to loadbalancer URL.

It is clear that, but i haven’t asked that

Hi @s_tartaglione

Did you get chance to look at the following documentation?

IQService architecture: Network ports and firewalls - Compass

I found this on developer community; not sure this is relevant topic.

Mutual TLS - webservice connector - IdentityIQ (IIQ) / IIQ Discussion and Questions - SailPoint Developer Community