Forum Discussion
khtut2012_10706
Feb 20, 2012Nimbostratus
F5 LTM - load-balance multiple network segment with cross-talk
Hi
I am planning to deploy the new BigIP LTM to the current 2 server firms. We have Web-Farm(192.168.1.0/24) and App-Farm(192.168.2.0/24) separated by Firewall for security.
We don't want to change the IP addressing thus opt for VLAN-Group to make LTM as inline deployment.
We only have budget for 1 pair of LTM thus I need to use the same LTM for both Web & App Firm. Means, LTM will have 2 connections to Web segment and 2 connections to App segment.
Normally, traffic will flow from Internet -> Web and Web -> App.
Now my question is :
After LTM is deployed, when Web Server(Real) talk to App Server(Virtual), how the traffic will flow? Is web server traffic hit to firewall or is it going to be routed by LTM?
My objective is to force the traffic to pass through via Firewall for security reason.
Thanks in advance for help and hope to get this work.
Kind regards
khtut
- nitassEmployeedo you mean you are deploying 2 vlan groups (one is on 192.168.1.0/24 and the other one is on 192.168.2.0/24)? and you want to know when host on 192.168.1.0/24 subnet is going to talk to host on 192.168.2.0/24 subnet, will it bypass firewall using bigip?
- khtut2012_10706NimbostratusThanks for the reply.
- khtut2012_10706NimbostratusTested in the Lab and traffic will hit to Firewall before routed back to LTM.
- HamishCirrocumulusUse network virtual servers to perform the forwarding of traffic from one vlan to another.
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects