Forum Discussion

zoolab's avatar
zoolab
Icon for Nimbostratus rankNimbostratus
Aug 09, 2019

DTLS not getting any traffic

trying to figure out why in my APM - SSLVPN configuration no traffic is hitting DTLS virtual :: environment is as follows :

 

First termination point :

https virtual --> ssl offloading --> Access policy --> connectivity profile --> User connects succesfully --> establishes vpn tunnel interfaces - works fine

 

 

second virtual server :

listens on estabished vpn tunnel --> does IP forwarding for all vpn IPs through snatpool IP -> working fine. I see hits.

 

3rd virtual servers :

dtls (udp 4433) virtual server -> basically terminates dtls forwarding.

 

However for some reason the dtls is not getting any traffic. The connection profile has the DTLS checkbox already checked.

  • does your edge client say it is using DTLS?

     

    http://socpuppet.blogspot.com/2017/10/f5-dtls-edgeclient-sslvpn.html

     

    is the DTLS port allowed on firewalls / proxies / ... between the client and server?