Forum Discussion
F5 VS Conflict with citrix configuration through our migration.
Dears,
We migrate from Citrix to F5 VM. we copied all configurations from Citrix to F5 VM and all F5 VS were disabled.
Just as we connected the NIC of F5 VM, all service become down although we disabled VS of F5 VM.
when we disconnected the NIC of the F5 VM, all service become up.
Why? Is this a Conflict with Citrix configuration?
7 Replies
- Ireda
Cirrostratus
Hello LiefZimmerman
I am waiting for a window of downtime to test this solution, and I will repost the update here when I finished.
Thanks for your support.
Ireda,
If your post was solved please choose Accept As Solution on one (or more) replies.This helps other members find answers more quickly and confirms the efforts of those who helped.
Thanks for being part of our community.
LiefYup, as stated earlier... VIP will still respond to ARP and you may need to clear cache. I presume you are migrating a few VIPs at one time and not a single "big bang" migration. I would selectively disable ARP on all VIPs and then bring up as you migrate.
Also, how are you handling the network routes? Did you create new Self IP addresses for the network, or are you using the same IP addresses for the network as on Citrix? If you are migrating a few at a time and need both networks up to both Citrix and F5, you may have issues. You will eventually need to move a route to the F5 self IPs. However, if you are only moving a few VIPs at a time, you may need to temporarily put in more specific /32 routes for the VIPs individually as you move services from VIP on Citrix to VIP on F5.
Some more considerations ๐
- Ireda
Cirrostratus
Hellowhisperer, thank you so much for your reply.
Yes, I am migrating a few at a time and need both networks up to both Citrix and F5. I used new IPs for the self and floating but from the same subnet of citrix, Ex: citrix self IP 10.10.20.2, F5 self IP: 10.10.20.5.
Also I added specific routes /32 for backend server on F5. Regarding FW policy I allow connection from outside to "VIP /32".
But I did not disable ARP or ICMP. if I need both networks up to both Citrix and F5 to test F5 before the migration, Can I disable ARP and ICMP for spesific VIP not for all?
Hi Ireda,
disabled virtual servers still advertise through ARP and answer ICMP requests. Thatswhy you might have an IP adress conflict. However you can control this behaviour. See K16885: Controlling the BIG-IP ARP and ICMP echo response behavior for a virtual address.
Via tmsh you can disable arp and icmp-echo for all virtual server with a few commands.KR
Daniel- Ireda
Cirrostratus
Thanks Danial, I will try this
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com