Forum Discussion
flitz_29934
Apr 19, 2011Nimbostratus
LTM : virtual server in different subnet than a vlan --> possible
Hi everybody,
I'm not able to test it in short term so I'm wondering if the following design can work ?
I would like to know if the Virutal Server (VS) can be set in a subnet not known by the F5, I mean in a subnet not associated to a vlan. To be more clear, see the example below.
- create a vlan "link" + self-IP : 10.1.1.1/30 associated to the vlan "link". This "link" is used to connect the LTM to a router in the network. So a route to the LTM is possible through this vlan.
- create a VS : 192.168.1.1/32. As you can see this VS is not in the vlan previously defined. So it is a single IP only known internal to the LTM.
Could the design work ? Is it possible or must the VS in a defined vlan ?
If I configure a static route on the router saying that 192.168.1.1 can be reached by 10.1.1.1, could it work ? Does the LTM automatically consider the VS ?
Thank you in advance
best regards
- David_24361Nimbostratus@matt: thanks a lot matt for your reply.
- L4L7_53191NimbostratusI would disable arp on the VIPs in question, yes. The GARP mechanism is basically this: when BigIP fails over, it'll issue a gratuitous arp on the network. It'll do this for all of the addresses that it owns, with the idea that all of the devices in each vlan will update their tables and forward to the new active device. In large environments this can be a lot of arp traffic. The method described above can help avoid this type of arping, as the BigIP will only arp out for the floating self-ips in the event of a failover.
- David_24361Nimbostratusokay matt i will try disabling the arp. thanks for your explanation, i will let u know the result :)
- L4L7_53191NimbostratusOnly forward to the single floating IP address. Whichever unit is active will hold this address (think of it like an HSRP address almost).
- David_24361Nimbostratushmm matt, this also has been a question in my mind. should i forward to floating ip 1 or 2? or just the same?
- L4L7_53191NimbostratusHad to throw in a curve ball, didn't you! That's actually a good question, and I'll ask around internally with a person or two that may have done this. In the meantime, I'd start here: http://support.f5.com/kb/en-us/solutions/public/9000/400/sol9487.html?sr=13185918three
- David_24361Nimbostratushaha sorry matt, have been curious about that for a long time :D
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects