Forum Discussion
Tihomir_Hristov
Nimbostratus
Apr 15, 2015LTM Connection Loggin
Hey guys,
We have recently migrated to F5 HA pairs using SNAT and one of the requirements that came from our Security Group is logging every connection that passes through the F5 Load Balancers....
Tihomir_Hristov
Nimbostratus
Apr 15, 2015Hello Nathan,
Thank you for the reply. Unfortunately, we are not licensed for AFM and it is not an option. I was thinking in the direction of enabling debug logging some of the LTM sub-modules (IP, network, ...) and finding that information there. I tried enabling notice for IP and debug for network but can't see anything helpful there.
Thanks
- dragonflymrApr 16, 2015
Cirrostratus
Just wild guess, maybe turning on Packet Filters with one rule for all traffic with Action: Accept and Logging: Enabled could be kind of workaround? Piotr - Tihomir_HristovApr 23, 2015
Nimbostratus
Hello Piotr, This is actually a good idea. I gave it a shot but as soon as I enable packet filter logging I start getting log throttling: Apr 23 17:34:02 slb1-f5 notice tmm[9030]: 01250002:5: Per-invocation log rate exceeded; throttling. I am trying to see how to bypass that problem. Thank will keep you guys posted
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects