Forum Discussion
Doug_123818
Nimbostratus
Jul 13, 2017iRule that will log source IP's when using SNAT with LDAP
Our F5’s are one-armed with automap on all VIP’s. What I need is to log the actual source addresses going to specific VIP’s. This is for LDAP so x-forward-for doesn’t work.
Thanks
Yann_Desmarest
Cirrus
Aug 02, 2017Hi,
It's hard to insert some information within an LDAP query. I think, you should consider that for those TCP services, if you do configure SNAT, your backend server will be blind.
You may stop using SNAT on the Virtual Server and configure your backend server to route traffic back to the bigip.
Here is an interesting write-up on that topic.
Bye
Yann
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects