Forum Discussion
does vlan need interface assigned?
Hi,
Bests deployment are when you use at least 2 arms (best on security).
For example with a single arm deployment, imagine if you're under DDoS attack. Even if you're F5 can protect your server from this attack, your monitors will be impacted because they use the same interface.
What you can do if you want to keep this 802.1q tag as a DMZ separator is to use trunk with two interfaces.
Keep in mind that if you want to use a cluster it's recommended to use a vlan dedicated for synchronization.
When I have to deploy new BIG-IPs for my customers, I usually use 3 interfaces or 4 if it's a cluster (1 for the MGMT, 1 for DMZ network, 1 for inside, 1 for HA).
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com