Forum Discussion
yeser
Nimbostratus
Dec 05, 2008it's possible to rewrite mac address?
Hi,
I have this deployment in my customer's network
Internal client sends a request to a server without going through BIG IP (It might be in this way). Default route of this server is BIG IP self ip.
Server response obviously goes through big ip via VS_FORWARDING but BIG IP forward the response to fw with its mac address and the fw detects it like IP SPOOFING. It's possible that BIG IP send the response with client MAC address?
Thanks in advance
- James_Quinby_46Historic F5 AccountYou can view and manipulate the MAC address information with the LINK command.
- James_Quinby_46Historic F5 AccountI need to amend my answer. The LINK::nexthop and Link::lasthop values are read-only.
- JRahm
Admin
a vlan group in transparent mode would be an option, as would an exception map in your firewall for layer2 inspection, depending on your product. - yeser
Nimbostratus
so, anything to do via iRules? - hoolio
Cirrostratus
I don't think there is a way to modify the source MAC address from an iRule. - Spidey_29396
Nimbostratus
Hi Jason, - nitass
Employee
are you using vlangroup which Jason suggested? - Spidey_29396
Nimbostratus
Hi Nitass, - nitass
Employee
sorry i was confused. if you want bigip as server default gateway, i understand server and router should be in different subnet. - Spidey_29396
Nimbostratus
Hi Nitass,
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects