Forum Discussion
Paulo_Vinicius_
Altocumulus
Feb 13, 2023Implementing new IP forwarding virtual servers using IP Address Lists (shared objects).
Hi Dear F5 DevCentral community! We have a client that already uses IP forwarding virtual servers using as a source an IP Address /32, especifying exactly the source that these IP forwarding virt...
I'm still not sure about whether the eSafe host listens on its own IP and port and then sends validated traffic to a new IP address or if it's a transparent network device. There are two main methods for passing traffic to another host for validation.
Use the method described by Deb in this techtip:
Conditioning iRule Logic on External Information - 1 - HTTP::retry
(Click here)
Or you could configure an iRule using the example provided in this post to split off traffic which is a POST with a file type of .exe to a pool other than the VIP's default pool. The pool would contain the eSafe host. If the eSafe host validates the request then it could send that back to another VIP on the BIG-IP which points to the pool of web servers.
There might be other approaches to configuring this, but I don't understand the requirements well enough to detail them.
Aaron
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects