Forum Discussion

Muhammad_Irfan1's avatar
Feb 04, 2015

one arm model Question

I am using one arm model. VS are external vlan and members are internal vlan. Gateway of the servers is F5 through Cisco switch. Which is working but cause asymetric routing in case someone access server directly, as he is routed directly to server through cisco switch but on the return traffic pass through F5 as gateway is F5. If i keep the gateway one cisco switch and use SNAT will it still work?

 

2 Replies

  • I don't think so, the traffic won't be SNATted as it doesn't pass through the F5 inbound, only outbound. Alternatives would include;

     

    • Add specific routes for the hosts that will connect directly, so they don't go through the F5
    • SNAT elsewhere first somehow
    • Modify the routing so even the 'direct' traffic goes via the F5, through a routing VS