Forum Discussion
yammy1688_99834
Nimbostratus
Feb 02, 2011Dedicated firewall interfaces for each pool, LTM config?
I'm putting the LTM in an environment where we have dedicated firewall (FWSM) interfaces (along with corresponding ACLs) for each pool/farm and require that all traffic for a given farm flows through ...
yammy1688_99834
Nimbostratus
Feb 11, 2011Posted By rcheeks on 02/02/2011 04:02 PM
You could use XFF so the end point servers can see the real client IP address.
https://support.f5.com/kb/en-us/solutions/public/12000/200/sol12264.html?sr=12488278
This data is also available via cli on the LTM:
bigpipe conn show all | more
HTH,
Roger
Hi Roger,
We have a separate subnet per pool and each subnet has a dedicated firewall interface along with associated access-lists. Due to this I cannot use the LTM as the gateway without using some trickery like source based routing.
I just went ahead with a one-armed config. Makes everything a lot simpler.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects