Forum Discussion
Mayur_Sutare
Mar 13, 2020MVP
- If you want to allow access to specific source IP addresses/subnet, the most secure way is to do it using IP filter rules/ASM. You can alternately do this with an iRule and data group. Create an address-based data group (ex.allowed_IPs) and add the allowed IPs/subnets in it.
when CLIENT_ACCEPTED {
if { not ( [class match [IP::client_addr] equals allowed_IPs] ) } {
reject
}
}
2. If your url 'abc.yyy.com' is same then you can directly bind pool "abc.yyy.com443" to VS associated with this URL. So all requests hitting to given URL (irrespective of URI part), request will go to same pool.
Hope it helps you!
Mayur