Redirect internal request to external ingressgateway directly towards it

:wave: I have the following endpoint which works fine - reachable (with ssl termination / sni).
Now I want that if an internal container calls that it won’t resolve the external ip address but rather directly the internal service ip from the istio-ingressgateway service (for valid tls termination). I tried it with a simple Virtual Service like

kind: VirtualService
  name: harbor-core-internal
  - route:
    - destination:
        host: istio-ingressgateway.istio-system.svc.cluster.local

but this does not work. It still resolves the external ip. Any ideas?
Thanks a lot :cat2:

I did this with another service - not directly to istio-ingressgateway and no tls/ssl this works.

Hi, can you elaborate on how you solved this?

I didn’t solve it.
I worked around it enbabling insecure registry etc. :no_mouth: