Forum Discussion
Richard_22613
Mar 25, 2013Nimbostratus
F5 Lync iApp with Cisco firewalls
I have configured the Lync iApp on a F5 LTM in our DMZ behind a Cisco firewall.
The client AV traffic goes through the firewall, hits the F5, which sends it on to one of the edge servers (in the...
Ryan_Korock_46
Mar 27, 2013Historic F5 Account
Sure Richard... so just to reiterate, we need this forwarding VIP because we want the BIG-IP to forward traffic from the Edge Servers out through the firewall. This creates a bit of an assymetric loop for traffic coming in from remote clients directly to Edge Server (The incoming connection will go from the firewall directly to the Edge Server, however the Edge Server will send all return traffic to the BIG-IP and rely on the BIG-IP to forward it to the firewall). This is why we need to set 'Loose Connections' on this forwarding VIP.
1. Create a New protocol profile based off of the FastL4 template profile. Enable 'Loose Initiation' and 'Loose Close' on this new profile.
2. Create a new VIP with the following characteristics (Network, Destination = 0.0.0.0, Netmask = 0.0.0.0, Forwarding(IP), and the new client profile you created above.
This should be it. Let me know how it goes Richard.
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects