Forum Discussion
OneConnect mask 0.0.0.0
Hi Jatin,
right now I'm not aware of any specific scenarios for different masks in the OneConnect profile. But the bigger the mask the more clients are theoretically allowed to use existing serverside connections. But keep in mind that when you are using SNAT, the OneConnect feature will be mapped on this IP-address. So with a standard SNAT automap the OneConnect mask doesn't matter, because all clients will share the same source-IP.
But I have another question here, I can remember from the past (I guess it was already with version 9.x) that only a /32 mask in the OneConnect profile allows the BIG-IP to investigate each and every subsequent HTTP-request (required for specific iRule logic). Is this still valid in current versions (11.5.x or 12.x)?
Thank you!
Ciao Stefan :)
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com