Forum Discussion
TCP profile question
Header To Insert:
- client_addr
- client_port
- server_addr
- server_port
- ip_tos
- link_qos
The format for the variables is: ${variable}. So to insert the client IP address in the header you could use: ${client_addr}.
Unfortunately, none of these options allow you to specify the node address.
Aaron
- SergioPontes_36Oct 06, 2018
Nimbostratus
OK. I found it strange because I'm in version 14 and even without activating application security synchronization, the policies I created on the active device were replicated to Standby. Is there anything more specific that is updated if I enable application security synchronization?
My question would be this. What is actually synchronized in the ASM module only with traditional HA configurations, and what is synchronized after I enable application security synchronization?
- Simon_BlakelyOct 08, 2018
Employee
Did you verify that the actual ASM Policy content was synced, or was it just the policy name attached to an empty policy?
An ASM policy consists of an entry in the
, which just tells mcpd that there is an ASM policy of that name, and an ASM database entry. If mcpd sees ASM policy names inbigip.conf
without the matching ASM database policy data, the policies will be auto-created as empty (and transparent) ASM policies.bigip.conf
The actual policy configuration settings are stored by ASM in a mysql database - this is what is managed by ASM policy synchronization.
I suspect that you managed to sync the policy names but not the Policy settings.
Of course, it could be a new issue. you can find the manual on v14.0 ASM sync here
- SergioPontes_36Oct 08, 2018
Nimbostratus
Many thanks for you support. I think it has now been well explained.
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com