Forum Discussion
Fadhil_Marus__T
Nimbostratus
Jan 21, 2009Configuring BIG-IP Link Controller
Hello all,
I'm new in F5, and i confused to how to configure LC.
I'm using 2 ISP link, and a single LAN. I want to load balance outbound (for now) internet traffic. I already following the configuration guide, but still i cannot access the internet.
The following are what i've done (IP Public just for reference):
ISP1 subnet: 202.20.10.0/255.255.255.240
ISP1 gw: 202.20.10.1
ISP2 subnet: 101.10.10.0/255.255.255.240
ISP2 gw: 101.10.10.1
LAN subnet: 192.168.1.0/255.255.255.0
1. Creating VLANs (ISP-1, ISP-2, and LAN) and set their physical port.
2. Create self IP (ISP1: 202.20.10.2, ISP2: 101.10.10.2, LAN: 192.168.1.1)
3. Create Pool (Local Traffic > Virtual Server >Pool) default_gateway (member: 202.20.10.1, 101.10.10.1)
4. Assign Pool default_gateway to Route > default gateway
5. Create Link (ISP1: Link ISP1 Router: 202.20.10.1, ISP2: Links ISP2 Router: 101.10.10.1)
6. Create Farm VS_ALL (0.0.0.0/0.0.0.0 pool: default_gateway, Profile: default, Address Translation: Checked, Port Translation: Checked, SNAT: Auto Map.
My PC configuration: IP Address: 192.168.1.100/24, gw: 192.168.1.1.
Still I cannot access internet from my PC.
Is anyone can help me? or if it's possible to share configuration for LC.
Any help would be appreciate..
Regards,
Fadhil
12 Replies
- dennypayne
Employee
Hi Fadhil,
That all looks good except the Address and Port Translation, those should be off by default when you create a wildcard network virtual server (I'm assuming your 0.0.0.0/0.0.0.0 vip is set to port 0 as well).
Denny - Fadhil_Marus__T
Nimbostratus
Hi, thanks b4...
So with the default profile, outgoing connection should be ok? but still i'm unable to connect to internet, i'll try it again later.
Thanks.. - dennypayne
Employee
Not sure which profile you're referring to, there's multiple types. Which virtual server type do you have the forwarding virtual set to? It should be Performance L4, not Standard, and should be set to use All Protocols.
Denny - Fadhil_Marus__T
Nimbostratus
Dear Denny,
After several trial, i figure out that i have to create SNAT pool for outgoing traffic (wildcard VS), means that i cannot only select Auto Map without creating SNAT pool.
Regards,
Fadhil. - maman_57197
Nimbostratus
hi im also new with F5, i have same scenario with fadhil, but i cant add a link it says "links must have an associated data center with it"..why is that so?..its a 6400 LTM with an add-on module LC..
thanks for any help.. - dennypayne
Employee
The LC uses the same data center mechanism as GTM but it only allows one datacenter called "default", and it's hidden in the GUI. Sometimes I have seen that the datacenter does not get correctly created in wideip.conf so you have to manually add it in or format it correctly. I would contact F5 support so that they can log another case against this issue. They can also tell you the appropriate edits to your wideip.conf to get the datacenter set correctly (without seeing it I don't know what to tell you needs to be edited).
Denny - dennypayne
Employee
EDIT: double post, sorry - Deb_Allen_18Historic F5 AccountActually that's a known issue I just wrote up for AskF5. It's an internal configuration mismatch issue that is easily resolved:
Log into the command line & run
then try to add the link again.gtmparse -l
AskF5 solution detailing the issue will be published shortly (SOL9715: Link Controller incorrectly generates error when creating a link object ) When avail it will be here: Click here
/deb - Deb_Allen_18Historic F5 Accountoops, corrected link above.
- Deb_Allen_18Historic F5 AccountThe solution (which will be live tomorrow) doesn't have any more of a workaround than that, so I'd say open a Support case then.
Post back if you find there is another cause so I can request an update to include it in the solution.
/d
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects
