Forum Discussion
In nPath configuration, BIG-IP does not send ICMP reply to the L3 switch.
Hi TKC,
in a typical nPath configurtation your server dont use F5 as Def-GW. It should be your router. F5 should only see and balance ingress traffic...
Any specific reasons to use F5 as Def-GW on your servers?
Cheers, Kai
Hi Kai,
Because the server needs to verify the source IP.
I understand that if I change the G/W of the server to L3 and configure Automap, I need the X-forward-for function to check the source IP.
However, the G/W of the server was configured as L4 because the end customer was not able to use the X-forwared-for feature.
I searched on the forum and I think it can be solved with forwarding virtual server.
Is it possible to solve it with the configuration below?
ltm virtual Forwading_VS {
creation-time 2021-08-20:21:22:48
destination 0.0.0.0:any
ip-forward
ip-protocol tcp
last-modified-time 2021-08-21:10:00:37
mask 255.255.255.255
profiles {
fastL4 { }
}
serverssl-use-sni disabled
source 0.0.0.0/0
source-address-translation {
type automap
}
translate-address disabled
translate-port disabled
vs-index 6
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com