Forum Discussion

ashish_sharma43's avatar
ashish_sharma43
Icon for Nimbostratus rankNimbostratus
Nov 17, 2015

Not able access internal servers from external through http

Using BIGIP LTM virtual edition 11.3 in VMware workstation. Kindly help to fix issue

 

Topology like this external --Eth0 --BIGIP ---internal

 

[root@BIG-IP:Active] config route Kernal IP routing table Destination GatewayGenmaskFlagsMetricRefUseIface 127.1.1.0*255.255.255.0U000tmm0 127.3.0.0*255.255.255.0U000Mgmt_bp 10.2.0.0*255.255.255.0U000internal 192.168.2.0*255.255.255.0U000external 10.3.0.0*255.255.255.0U000HA 10.1.0.0*255.255.255.0U000eth0 default*0.0.0.0UG000external

 

  • What subnet is the internal server on vs the external client subnet?

     

    The quickest blind-shot way to fix this is usually to set "Source Address Translation" to "Automap" on the LTM virtual server.

     

  • BinaryCanary_19's avatar
    BinaryCanary_19
    Historic F5 Account

    What subnet is the internal server on vs the external client subnet?

     

    The quickest blind-shot way to fix this is usually to set "Source Address Translation" to "Automap" on the LTM virtual server.

     

    • BinaryCanary_19's avatar
      BinaryCanary_19
      Historic F5 Account
      You can use a comment on my original post to reply. Have you set Source Address Translation to Automap yet? You need address translation enabled because otherwise, you need to have routing between the two subnets. The routing has to be such that the traffic is all flowing through the F5, and never directly between the client and the server.
    • Chase_Abbott's avatar
      Chase_Abbott
      Icon for Employee rankEmployee
      There's definitely still a route issue here. Can you compare the setup for Fusion (should be similar to workstation) to your network setup? https://devcentral.f5.com/s/articles/f5-developer-edition-installing-big-ip-on-vmware-fusion-8