Forum Discussion
madi_56757
Nimbostratus
Jan 17, 2005inteligent SNAT with iRule
Hi,
I have in the version 4.5.10 a iRule for an inteligent SNAT,
VIRTUAL ANY UNIT 1
|
|
|
...
unRuleY_95363
Jan 19, 2005Historic F5 Account
Two things:
Regarding the IP::addr command - I'm not sure if this problem occurred as you typed in the rule to the forum, but you need a space between the IP::addr command and the [IP::remote_addr] command. It doesn't look like you have one... ? If this is the case, then you could be getting a rule failure which is logged to /var/log/ltm.
Regarding the snat not working - Can you give me some information about how your virtual is configured? The question I have right now is what the default action of the virtual is. Based on the way you currently have the rule, if the address doesn't match, you pick a snatpool but don't designate forwarding or a pool for load-balancing. Perhaps your rule should look like:
when CLIENT_ACCEPTED {
if {not [IP::addr [IP::remote_addr] equals "2.2.2.0 netmask 255.255.255.0"]} {
use snatpool test_snat
}
forward
}
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects
