Forum Discussion

レザ's avatar
レザ
Icon for Cirrus rankCirrus
Jul 12, 2024

Loadbalancing WAF appliance using F5 LTM

Hello, I have 5 WAF devices that do not have HA and Loadsharing capabilities! (Please don't ask because I don't know myself :D) I want to balance the incoming traffic to them by placing an LTM in front of them. Unfortunately, my F5 equipment only has LTM capability and our company does not want to buy or upgrade the license for AWAF capability.

In your opinion, does this method work and if it does, please tell me what is the most suitable mode for VirtualServer?

Thankful

3 Replies

  • the f5 config depends on how your wafs are configured because some waf can work in L2 inline/bridge, L3 route or L4-L7 reverse proxy modes.
    you need to configure f5 accordingly.
    f5 vserver can loadbalance backend nodes in all above modes.

    • レザ's avatar
      レザ
      Icon for Cirrus rankCirrus

      My WAFs are working in L7 reverse proxy mode, Since we have a large number of https sites and the SSL of these sites is terminated on these WAFs, I want to finally perform load balancing on layer 4 because I don't want to get involved with SSL, so i have configured an performance (Layer 4) virtual server but i have issues with https sites and sometimes i get an SSL error.

      Do you have a good solution for this issue?