Forum Discussion
Lee_Sutcliffe
Nacreous
Oct 01, 2012IP Forwading VIP - Access List
Hi,
I've put together the following iRule to prevent two subnets communicating via the virtual forwarding VIP.
We have several VLANS behind the LTM and two of which cannot communicate with ea...
Mohamed_Lrhazi
Altocumulus
Oct 01, 2012
You could test the iRule by creating a new similar wildcard VS... just make it listen on a port unlikely to be used as destination. say port=9, or port=49899
Maybe the iRule could be simplified by using one datagroup called reject_to_from, and rule:
If client_addr in reject_to_from AND destination in reject_to_from:
reject
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects