For more information regarding the security incident at F5, the actions we are taking to address it, and our ongoing efforts to protect our customers, click here.

Forum Discussion

gg234_32466's avatar
gg234_32466
Icon for Nimbostratus rankNimbostratus
Feb 25, 2014

Loadbalance SMTP relay on F5 and exchange 2010 (Urgent help needed)

We are trying to use two Hub Transport servers to load balance all internal application relay. The roblem I have run into. All connections made from F5 automatically connects to the default receive connector rather than the custom receive connector.Also we want to see the client ip addresses instead of bigip VS server ip as source.

 

I have tried to disable SNAT and i am not ablr to telnet SMTP server.

 

I would really appriciate your help.Sorry to bother you guys i need to fix this relay issue ASAP.

 

5 Replies

  • Disabling SNAT means that your hub transport servers would see the communications as if they were coming from the actual client IP addresses. Hub server response traffic to the clients would need to return through the F5 in order for the connections to work. Otherwise, the client would see return traffic from a different IP address and the connections would never establish. You'd need some type of policy based routing if the LTM isn't directly in the communications path.

     

    Regarding the custom connector you mention, is that a separate IP address on the hub transport server or are both listening on the same IP address?

     

  • You'd need some type of policy based routing

     

    I need to check exchange engineer to do the above policy based routing

     

  • I would think the policy based routing would best be done via some router/firewall within your network. If no such device exists, the hub transport server routing may be able to be modified. So much depends on the setup and complexity of your environment though. Sorry I can't be of more help.