Forum Discussion
meena_60183
Nimbostratus
May 12, 2010Is this possible with a single LTM?
I have 3 servers (acts like routers) with 2 interfaces each, say in1 and int2. When traffic hits int1, it gets routed through int2 to other resources on the internet or intranet based on the criteria configured on the server.
I have a pair of LTM (active/standby) mode. The requirement is to load balance int1 on all 3 servers and provide a single VIP.
I created a
VIP 10.10.31.116 - for int1 ip 10.22.232.11, .12 and .13
I also created a VIP for int2
VIP 10.10.31.117 - for int2 ip 10.22.255.11, .12 and 13
When the traffic gets to 10.10.31.116, say I send it to server 10.22.232.11. This server sends the traffic to either internet or intranet resources through the int2 interface. The return traffic needs to come back to the same server. I am using automap for SNAT.
The current default gateway is the router interface on the int2 side which is 10.22.255.1. Do I need to change it to self IP of F5? Is this possible to do with a single pair of LTM?
Meena
- hoolio
Cirrostratus
I'm a bit lost by the description. Could you create a simple network diagram describing the scenario which includes sample IP addresses? - meena_60183
Nimbostratus
Here is the drawing. The server (appliance on the drawing) has 2 interfaces. Traffic from the clients always enter through int1 and gets out through int 2. - meena_60183
Nimbostratus
I found more information and a sample configuration using Cisco CSM. The bottom line is the VIP for int1 ans int2 needs to be on separate subnets. I looked at virtual partitions on BigIP and as far as I can tell, it is only for administration level partition. - hoolio
Cirrostratus
Hi Meena, - Hamish
Cirrocumulus
You don't need a second VS (You do mean Virtual Server when you say VIP right? Because a VS is a combination of IP and port - but the port could also be 0 == any) if I understand your configuration correctly. The only VS that is used in this scenario is the client -> service. Because the int2 interface is used by the appliances to communicate with their resources, and according to your diagram that traffic doesn't traverse the F5's at all. - meena_60183
Nimbostratus
Thank you for your response Hamish. - meena_60183
Nimbostratus
I used the idea from this following post
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects