Forum Discussion
F5 AFM behind the internet router
@TayF5un
AFM controls inbound/outbound. You set the direction of the traffic flow based on source vlan and destination IP's/VLAN
I would recommend using the AFM firewall as long as it can do all the NAT's you require. I have found some difficulty in using AFM to duplicate advancing NAT's that my other firewall vendor can do more easily.
Consider using TPS anomaly DoS protection for any websites that are potential targets. Make sure you tune the AFM DoS vectors.
HSL High Speed Logging is a recommendation since logging with ASM/AFM can get quite cumbersome on the standard MGT interface
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com