Forum Discussion
Kai_Wilke
MVP
Hi TKC,
in a typical nPath configurtation your server dont use F5 as Def-GW. It should be your router. F5 should only see and balance ingress traffic...
Any specific reasons to use F5 as Def-GW on your servers?
Cheers, Kai
Nov 30, 2022
Hi KaiTT ,
> you should change your configuration little bit , use one of two scenarios :
- Change the default gateway for "20.20.20.1" instead of using Bigip self-ip as a gateway , and configure
( SNAT automap or SNAT pool ).
by this scenario , ICMP traffic should go through L3 swith without forward it to Big-ip
All of this with respect to your routes. - Configure a fast layer 4 virtual server on your Big-ip and do not assign tcp profile to it , allow all protocols.
After creating it , go to virtual address and configure "echo-reply = disabled " not "always"
like below :
in this scenario , ICMP traffic should go through Bigip to server 20.20.20.10 and return back to F5 big-ip " its gateway"
> you only need to adjust your traffic flow , I recommend to do the first scenatio , using SNAT is very useful , so try it.
Regards.
- KaiTTDec 01, 2022Nimbostratus
Hi Mohamed,
Thank you for your kind reply.
As I mentioned to Kai, the automap is not available.
I am testing it because I think it can be solved with forwarding VS.
Thanks.