Forum Discussion
adamsr1_1542
Nimbostratus
Sep 17, 2008Can't communicate outside the Bigip
I recently upgraded my standby bigip from 9.1.2 to 9.4.5
I messed up and did not restore my config at the time so i had to manually configure it.
After I configured the box from scratch (its configured identical the the active box (its still on 9.1.2) I get no connectivity to the outside network
when i take out the default-gateway the nodes that are not on that network come up but the nodes that are on the same network as the default gateway stay down.
any ideas if you understood this??
4 Replies
- hoolio
Cirrostratus
There must have been some object in the 9.1.2 config that was used to allow outbound access. LTM is a default deny device so no traffic would pass through without a VIP, SNAT or NAT to do it. You can configure one or more of these objects to allow outbound access. A wildcard virtual server with destination address translation disabled would be the most configurable. You can set it to forward if you want to use the routing table or you can specify a gateway pool if you have multiple routers. You can check the LTM config guide on AskF5.com for more information. - smp_86112
Cirrostratus
Last weekend I cut over to new hardware, and had what sounds to be similar symptoms. I could ping my default gateway, but when I tried to get past it, I got "network is unreachable". From outside I could ping the LTM, but could not ssh or pull up the management gui. I ended up restarting the LTM, and that resolved it. - adamsr1_1542
Nimbostratus
here is my senero... I upgraded from 9.1.2 to 9.2.1 and missed the prompt to roll my config over so I continued to upgrade to 9.4.5. - adamsr1_1542
Nimbostratus
I SCREWED UP....HERE IS THE SENERO:
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects