Forum Discussion
Health Check when VIP and Node in different VLANS
This behaviour does indeed sound correct.
The F5 sends health monitor probes from its non-floating self IP on the egress VLAN (i.e. the VLAN on the F5 facing closest to the pool member). Since your pool members sit behind the firewall and not the F5, it will be sourcing the health probes from the front-side VLAN (i.e. Firewall-DMZ-30 - 192.168.30.5) and sending it to the upstream next hop which is the firewall (192.168.30.1). The firewall will then route the traffic to the nodes on Firewall-DMZ-10 - 192.168.10.x
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com