Forum Discussion
jal1230_40013
Nimbostratus
Oct 16, 2012Auto last hop enabled with Checkpoint firewall
We have a pair of F5 LTM 3900's running version 11.1. We were able to ping Virtual servers from our Internal hosts thru a Checkpoint cluster. Once we turned auto-last hop on per vlan we can no longer...
jal1230_40013
Nimbostratus
Oct 16, 2012The checkpoints are not running VRRP Cluster XL. I ran captures on both the Firewall and F5. The ICMP traffic gets to the F5 and The Checkpoint receives it back from the F5. You can ping the Virtual servers from the Checkpoint, however the ICMP responses never gets back to my terminal on the inside network. Once I turn Auto last hop off on the vlan on the F5 I get replies at my terminal.
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects