Forum Discussion
Jason_L_40779
Nimbostratus
Sep 03, 2010One Armed Config question
I have an internal web app being load balanced with 3 web servers using a one armed configuration. The developers of this app recently, without telling me, added a link which when clicked, will go out to the internet to an offsite server. This offsite server will then create a HTTPS connection back to a proxy (not my F5) which will then make an HTTP call back to the VIP. I don't think this is going to work.. If i'm understanding the one armed configuration concept, the internet connection launched from this web server will go around the F5 completely. Hence the default gateway of the web servers is the network router and not the bigip. When this web server makes a connection to a offsite server, he will then make a connection back to the proxy, and send it to the VIP. When the Vip receives this traffic, how is he going to know where to send it? He doesn't know anything about this connection being iniated being it's launched from the web server. I want to make sure that i'm understanding this correctly?? I think they may need to point directly at their webservers for this piece of it. I believe the bigip will see this is a new client connection and send it to the next available web server.
Wondering if anyone has had any experience with this or any thoughts...
- Jason_L_40779
Nimbostratus
I was just thinking about this. Could an irule possibly fix this? Is it possible to look and find out which web server sent the request and when the bigip gets the connection, he directs it to the correct web server? Even though he knows nothing about the connection, if it gets to the correct webserver behind it, could it work?
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects