Forum Discussion

Dec 14, 2010

Nortel VPNs and BigIP transparent ICMP health monitoring

Hello All. We have Nortel VPNs attached to our F5s. We were told that the Nortels must have "deny all" configured for compliance reasons, but that will interfere with the health check ping that comes from the BigIPs. Does anyone have any experience with this or have any documentation from F5 that says BigIPs must be able to ping their attached devices as part of the health check via "ping"?





  • Hi Ronbo,



    Generally, if ICMP can be enabled, it's ideal to do both an ICMP and app layer check. But you don't have to have an ICMP monitor associated with a pool. You should be able to use an app layer check instead.