Forum Discussion
LTM routing configuration
Hi,
I have the following LTM configuration. VLAN1-external , VLAN2 and VLAN3 internal. There are several virtual servers configured, and also an forwarding IP vs in order for the LTM to behave as a router(which works very well...the only thing is that I cannot access for example from VLAN3 the local and floating IP from VLAN 2, but I can access any other machine in VLAN2).
The virtual servers configured on the LTM cannot be accessed from the internal VLANs(vs configured to load balance in vlan 2 can be accesed from VLAN2 but not from VLAN3).
Is there any way to make this possible?
Thanks,
Costin
2 Replies
- nitass
Employee
the only thing is that I cannot access for example from VLAN3 the local and floating IP from VLAN 2, but I can access any other machine in VLAN2is this what you are seeing?
sol3475: The BIG-IP system may not respond to ICMP ping requests for a self IP address
http://support.f5.com/kb/en-us/solutions/public/3000/400/sol3475.html
The virtual servers configured on the LTM cannot be accessed from the internal VLANs(vs configured to load balance in vlan 2 can be accesed from VLAN2 but not from VLAN3have you run tcpdump to see what is going on?
e.g.
tcpdump -nni 0.0:nnn -s0 -w /var/tmp/output.pcap host x.x.x.x or host y.y.y.y
x.x.x.x is client ip
y.y.y.y is server ip - Costin_123567
Nimbostratus
It was a missconfiguration from my part. The virtula servers were configured to be active on strict vlans.
Anyway on the same deployment there seems to be a problem with ssh connections that go through the F5. I tried creting a separate virtual server to handle the ssh connections and set the idle timeout to a higher value, but did not have any efect.
Is there any way to troubleshoot this issue?
Thanks
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com