Forum Discussion
bsm1970
Mar 02, 2016Nimbostratus
Attack signatures, security policies and NAT vs Virtual Servers
I'm new to the BIG IP system so forgive me if this seems rather simple.
We have a few public facing web servers we are bringing in to our DMZ (they are hosted elsewhere now). The traffic load...
bsm1970
Nimbostratus
bump for any other responses?
amjadb_4287
Mar 07, 2016Nimbostratus
Hi bsm1970,
you are supposed to NAT the public IP to VS IP address of F5 using your perimeter firewall either for each website or for all websites (in this latter case, irule should be in place to differentiate between different websites)
The virtual server should be standard and has at least http profile, SSL offloading (for ASM policy), SNAT, Pool and finally an ASM policy
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects