Forum Discussion
iRule that will log source IP's when using SNAT with LDAP
Our F5’s are one-armed with automap on all VIP’s. What I need is to log the actual source addresses going to specific VIP’s. This is for LDAP so x-forward-for doesn’t work. Thanks
1 Reply
Hi,
It's hard to insert some information within an LDAP query. I think, you should consider that for those TCP services, if you do configure SNAT, your backend server will be blind.
You may stop using SNAT on the Virtual Server and configure your backend server to route traffic back to the bigip.
Here is an interesting write-up on that topic.
Bye
Yann
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com