Forum Discussion
Load balanced Telnet Servers - Pass through original IP or hostname?
*Ahem*
What I meant to say is - I know what you're thinking. What the heck is this guy doing load balancing telnet servers? Well as often happens in the world we work in, application folks made an initial request to have two telnet servers load balanced for our WMS. We explained carefully what the strengths and weaknesses are of this topology, including the fact that client IP addresses would be hidden because of SNAT functionality.
Now the application folks need to know the original IP address of a client request passing through the VIP. in this case, the telnet server is built by Pragma Systems...
Does anyone know of a way to create an iRule that will pass the original IP address of the telnet client? I've been browsing the forums and I see HTTP based rules that do that, but nothing that seems to match other protocols.
Thanks for listening!
- Antony_413NimbostratusCan you clarify if your backend servers are on an "internal" vlan; one that must pass through the Layer7 always?
- Wil_Schultz_101NimbostratusYou have to turn off SNAT and route traffic from the Telnet servers back through the F5's, then the request will be from the remote host and you'll see the originating IP. For routing purposes you need to make sure traffic goes back through the F5's.
- Antony_413NimbostratusThere is also the multi-home host setup, but Advanced routing seems only to work well on RedHat *nix variants. (traffic from the Layer7 is forced back out the the ether that it came in on). The Hub spoke architecture works for all OSs though.
- Bayan_El_Ameen1NimbostratusI don't know if this will help you. But try adding it as a new header and check if this will help your application folks :)
- HamishCirrocumulusHmm.. Sorry, thought id replied to this one already, but apparently not.
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com