Forum Discussion

Eric_Oakeson_68's avatar
Eric_Oakeson_68
Icon for Nimbostratus rankNimbostratus
Jan 11, 2008

Hit pool members directly, bypassing VIP

I've had a request from my customer about accessing the pool members directly. I've tried to hit them this way, and it never works. Is it possible to just put in the IP of a pool memeber and the BigIP will just route it through? We basically want to do this for testing.
  • Deb_Allen_18's avatar
    Deb_Allen_18
    Historic F5 Account
    As long as the pool members are on directly connected networks, you could do that if you just configure a forwarding virtual server of type Forwarding (IP) that specifies for the destination 0.0.0.0 (or the subnet of the servers you want to reach) and is enabled at least on then ingress vlan.

     

     

    /deb

     

     

  • Thanks!!

     

     

    So I've got 3 servers behind the LTM, all on a directly connected subnet of the "inside" of the LTM. I only need to create ONE forwarding virtual server to reach them all correct? And then it would just route it like a router would?
  • That's correct. You could enable a forwarding virtual server for the subnet and all packets for that connected subnet will be forwarded through the LTM. Think of the forwarding virtual server as a permit statement in an ACL.
  • hoolio's avatar
    hoolio
    Icon for Cirrostratus rankCirrostratus
    For reference and some additional options you can take a look at SOL7229:

     

     

    SOL7229: Methods of gaining administrative access to nodes through the BIG-IP system

     

    Click here

     

     

    Aaron