Forum Discussion
genseek_32178
Nimbostratus
Jan 09, 2012Basic Setup of F5
Hi,
I want to setup a new F5 box in my network. Before, i do that i want to understand how it can actually be configured in Routed and Bridge mode.
I would really appreciate if someone can guide me on this.
F5 is connected to AGG pair A, with upstream device as Access Router and downstream device as L2 TOR switches connecting servers, as below.
Core
|
Access Router
|
|
F5---Trunk----Agg Switch - A
|
|
L2Hst TOR Switch
| |
| |
Server1 Server2
I want to start with Routed mode configuration using tmsh.
TH-genseek
38 Replies
- nitass
Employee
i do not see the internal or external cmd.internal and external are just vlan names. in your config, they are VLAN_A, VLAN_B, VLAN_C, etc. by the way, i do not think your bigip is in bridge mode. - genseek_32178
Nimbostratus
Ok,let me ask you directly.
["by the way, i do not think your bigip is in bridge mode.]
Are you concluding this because there is NO vlangroup cmd any where in the config?
What then is the mode, my bigip, is in?
If the existence of vlangroup cmd only criteria to say decide bridge or routed mode? - nitass
Employee
Are you concluding this because there is NO vlangroup cmd any where in the config?
What then is the mode, my bigip, is in?
If the existence of vlangroup cmd only criteria to say decide bridge or routed mode? i think you are not doing bridge since you do not have vlangroup configuration and also based on your diagram, access router and servers are in different subnet. - genseek_32178
Nimbostratus
OK.
Am also looking at the config part, where, i see that both the servers in the pool and the virtual IP are both in the same network.
Does it not indicate a bridge mode config?
Bcoz,in routed mode,both the servers pool and VIPs ought to b in different VLAN subnets, right? - nitass
Employee
Am also looking at the config part, where, i see that both the servers in the pool and the virtual IP are both in the same network.
Does it not indicate a bridge mode config? i do not think so. even both are in the same subnet, there is only one vlan.
Bcoz,in routed mode,both the servers pool and VIPs ought to b in different VLAN subnets, right?not really. virtual server and pool are able to be in the same vlan and bigip routes traffic between them. - genseek_32178
Nimbostratus
Thanks a ton!! nitass for your prompt and patience responses to all my questions. I really appreciate the effort. Thanks again.
As i'm from Cisco background and worked on Cisco load balancers, i was sort of conditioned on concepts around load balancers and therefore had to ask so many questions to understand the working of F5.
I must say, F5 is in LOT many ways different than Cisco load balancers in the way it works and has hoards of features to get hands on before one even starts feeling confortable with it.
If i have any questions in continutation to this thread, can i post them in the same thread or do i have to open a new thread? - nitass
Employee
you are welcome. :-)
If i have any questions in continutation to this thread, can i post them in the same thread or do i have to open a new thread?if it is a new question, i think opening a new thread may be good. it will be easier to understand for somebody searching it later.
additionally, there are other ways you can get help. one is F5 support and the other one is F5 SE in your country. F5 support is a good place if you think it is a bug or breakfix. F5 SE is the best to find a solution. - genseek_32178
Nimbostratus
nitass,
just rolled out a new VS on public ip..but not able to ping it from our edge access routers?
Another VIP on the same range, infact, the very next IP...is reachable from the access router?
Any idea..where i might be missing? - nitass
Employee
just rolled out a new VS on public ip..but not able to ping it from our edge access routers?do you know if icmp arrives at bigip?
the following is output when i run tcpdump on bigip and filter by virtual server address (172.28.19.79) and icmp.[root@ve1023:Active] config tcpdump -nni 0.0 host 172.28.19.79 and icmp tcpdump: verbose output suppressed, use -v or -vv for full protocol decode listening on 0.0, link-type EN10MB (Ethernet), capture size 108 bytes 04:22:50.815466 IP 192.168.206.42 > 172.28.19.79: ICMP echo request, id 1, seq 5, length 40 04:22:50.815484 IP 172.28.19.79 > 192.168.206.42: ICMP echo reply, id 1, seq 5, length 40 04:22:51.841650 IP 192.168.206.42 > 172.28.19.79: ICMP echo request, id 1, seq 6, length 40 04:22:51.841668 IP 172.28.19.79 > 192.168.206.42: ICMP echo reply, id 1, seq 6, length 40 - genseek_32178
Nimbostratus
Thanks again nitass for the response..
I'm not able to ping the VIP from within the F5 prompt itself.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects