Forum Discussion
Forwarding IP Question
You've a multitude of options. I don't see S/NAT as a security measure at all I'm afraid.
*Leave the VS as is and use a packet filter (or AFM) to restrict inbound access
*Leave the VS as is and use an iRule to restrict inbound access
*My preference: Leave the VS for the outbound access, disable it on the external VLAN. For inbound management create port specific VSs AND associated packet filters to restrict access.
*Better yet, use a secure access method (VPN, PPTP whatever) that doesn't go through the F5 and apply static routes as necessary on the servers.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com