Forum Discussion
OneConnect with SNAT/Automap -- Mask no longer matters?
Hi, If SNAT/Automap is used, the NATed source IP will always be a single IP address. Hence, all the mask applied will result in the same effect as 0.0.0.0. Is this understanding correct?
2 Replies
- scsp_177450
Nimbostratus
Addind to that, between the both, which has precedence?
eg. With a OneConnect mask of 0.0.0.0, and within the timeout limit, a idle connection to node A is available. A connection that comes in, that has a UIE persistent session to node B. Will the connection be passed to node A or node B?
Thank you.
- nitass
Employee
If SNAT/Automap is used, the NATed source IP will always be a single IP address. Hence, all the mask applied will result in the same effect as 0.0.0.0. Is this understanding correct?
i think so.
Note: If SNAT is configured, the BIG-IP system performs SNAT address translation on the source IP address, and then applies the OneConnect source mask to the translated SNAT IP address to determine whether it is eligible to reuse an existing idle connection.sol5911: Managing connection reuse using OneConnect source mask
https://support.f5.com/kb/en-us/solutions/public/5000/900/sol5911.htmlAddind to that, between the both, which has precedence?
i understand persistence is checked first.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com