Forum Discussion
Dave9348_208130
Nimbostratus
Jun 24, 2015F5 IP blocked in SFTP due to natting
As is expected we get bots trying to connect to out sftp server. Since the source address is natted to F5 IP (also natted in FW). Because of the bad login attempts the F5 IP gets blocked which causes...
boneyard
MVP
Jun 24, 2015i don't believe you can, HTTP is pretty much an exception with the X-Forwarded-For header, most other protocols don't offer such a way to relay the original IP. if you are just doing source NAT on your firewall the same would happen for HTTP.
an option is not to do source natting on f5 and / or firewall.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects