Forum Discussion

Sriram_Shanmuga's avatar
Sriram_Shanmuga
Icon for Altostratus rankAltostratus
Sep 05, 2018

Deploying BIG IP ASM in AWS platform

Hi All,

 

I am planning to deploy LTM + ASM in AWS platform in one arm mode. I have already created 3 subnets and a fortigate firewall which acts as a gateway for the 3 subnets. Now i would like to introduce a ASM to protect applications in one of the subnet.

 

Could you please share me the best practices for deploying ASM in AWS. I am planning to go for AWS market place. which instance is recommended.

 

Thanks Ram

 

  • Hey Ram!

     

    I suggest you to use the Cloud Formation Templates that F5 themselves have created and developed. If you are using the ones under the "Supported" directory, you will get assistance from F5 in case you run into any issues with the F5 deployment in AWS.

     

    The Cloud Formation Template has numerous of different deployment scenarios including Standalone with 1, 2 or 3 NICs. Clustered within the same availability zone with 2 or 3 NICs. And Clustered across availability zones with 2 or 3 NICs. They also have templates for autoscaling.

     

    Check out F5's GitHub page covering this and you will be able to read more about it. https://github.com/F5Networks/f5-aws-cloudformation

     

    I used this myself when labbing at F5 Agility conference in Boston and I must say I'm really impressed on how easy it is and the fact that you will get support from F5, it is golden.