Forum Discussion
dragonflymr
Mar 02, 2015Cirrostratus
Firewall sandwich
Hi,
I am trying do figure out scenario described in this doc Load Balancing 101: Firewall Sandwiches and as well in SOL2211
I think I can understand how setup in Load Balancing 101: Firewall Sand...
Mar 04, 2015
Hi Piotr,
regarding your question 1: The default gateway pool is required to handle outgoing connections in case your firewall sandwich is used for outgoing traffic initiated by internal users. For your tests regarding AutoLastHop you may find the connection table "all-properties" switch useful:tmsh show sys conn all-properties
It will show the ingress VLAN and last hop information for each connection.
Just add additional parameters to filter output on criteria as client IP or virtual server IP etc. In my opinion it does not show all information. At least I´m missing the egress VLAN information (used by VLAN-keyed connection feature to avoid asymmetric traffic flow on serverside). Thanks, StephanRecent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects