Forum Discussion
tristan_46655
Nimbostratus
Oct 29, 2008F5/ISA/Exchange
We have two F5 LTMs behind a firewall load balancing several Web servers/FTP/Citrix ...We are deploying Exchange in our environment (We currently have GroupWise) and the consultant helping us prepare ...
Kevin_52586
Nimbostratus
Nov 04, 2008We are testing ISA as well behind two LTMs. Here's what I sent to F5...
"When using LTM to communicate with Microsoft ISA servers, need to override Auto Last Hop(?) with a static ARP entry? This is because the ISA servers also load balance between themselves and use a virtual MAC. Traffic originating from inside the ISA firewalls come to the LTM with a local MAC address, but the ISA's expect the response to use the virtual MAC address. Our alternatives are to code one static entry for each ISA IP address, or turn off Auto Last Hop. We are not sure we want to turn Auto Last Hop off, due to possible SNAT problems(?). "
Traffic that originates from the outside works fine because the Big IP uses the virtual MAC. Any comments?
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects
