Forum Discussion
Not able access internal servers from external through http
Using BIGIP LTM virtual edition 11.3 in VMware workstation. Kindly help to fix issue
Topology like this external --Eth0 --BIGIP ---internal
[root@BIG-IP:Active] config route Kernal IP routing table Destination GatewayGenmaskFlagsMetricRefUseIface 127.1.1.0*255.255.255.0U000tmm0 127.3.0.0*255.255.255.0U000Mgmt_bp 10.2.0.0*255.255.255.0U000internal 192.168.2.0*255.255.255.0U000external 10.3.0.0*255.255.255.0U000HA 10.1.0.0*255.255.255.0U000eth0 default*0.0.0.0UG000external
What subnet is the internal server on vs the external client subnet?
The quickest blind-shot way to fix this is usually to set "Source Address Translation" to "Automap" on the LTM virtual server.
- BinaryCanary_19Historic F5 Account
What subnet is the internal server on vs the external client subnet?
The quickest blind-shot way to fix this is usually to set "Source Address Translation" to "Automap" on the LTM virtual server.
- ashish_sharma43Nimbostratus
Internal server subnet 10.2.0.0/24 External : 192.168.2.0/24
- BinaryCanary_19Historic F5 AccountYou can use a comment on my original post to reply. Have you set Source Address Translation to Automap yet? You need address translation enabled because otherwise, you need to have routing between the two subnets. The routing has to be such that the traffic is all flowing through the F5, and never directly between the client and the server.
- ashish_sharma43NimbostratusI was used source add translation to automap, but no luck
- Chase_AbbottEmployeeThere's definitely still a route issue here. Can you compare the setup for Fusion (should be similar to workstation) to your network setup? https://devcentral.f5.com/s/articles/f5-developer-edition-installing-big-ip-on-vmware-fusion-8
- ashish_sharma43Nimbostratus
Anyone can help to fix this
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com