Forum Discussion
LTM setup question
Are you using the F5 inline or in one-armed mode? I use the F5 as a router/gateway for all my server VLANs, so I trunk the "VLAN 200" and all server VLANs to the F5. Then I use the F5 as the gateway to route all server traffic by creating an IP Forwarding VS to handle any non-VIP traffic.
I always use out of band management, as in-line increases your attack surface. I use an out-of-band management network for the F5s, then I create an HA VLAN on the F5s that is RFC1918 unrouted and only allow those HA self-IPs to process the clustering traffic by setting "allow-service default", setting all other self-IPs to "allow-service none". I also create an AFM policy that allow clustering traffic between the nodes and tie this policy to the HA self-IPs. Let me know if you want to see some sample configuration.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com