Forum Discussion
taro_107756
Nimbostratus
Nov 02, 2007OneConnect: Security Consideration
The following description is in SOL6997.
"The BIG-IP LTM applies the source mask to the request, finds an eligible TCP connection, and aggregates the request from client B over the existing...
zafer
Nimbostratus
Jun 03, 2008Hi Deb,
if i configure oneconnect profile with network mask /24. What will i see source ip address in sniffed packets on server side (between bigip and servers).
why ask this question;
the server has access list ; some client accessible application the others not
if i configure the oneconnect profile with mask /24 some times i see forbidden.
when i look the tcpdump on client side source address exist on server accesslist but when i look the server side tcpdump i see different source address.
what i understand f5 uses first time opened connection on server side (when oneconnect enabled) and if the ip address can be different client address on client side?
regards
zafer
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects
