Forum Discussion
OneConnect with SourceMask
Looking for an explanation on OneConnect with SourceMask 255.255.255.255 Are new connections made for each new client connection or is the same connection used from the same client even though client Ip's would be different? Since OneConnect uses a SNAT would the SNAT IP be the only Client IP that is being reused based on source mask?
1 Reply
- nathe
Cirrocumulus
ShadowBot,
Without SNAT, OneConnect configured with a 255.255.255.255 mask means that idle serverside tcp connections will only be re-used for the same, returning client (assuming it has the same IP address at the time of the previous connection).
With SNAT then the source IP is SNATed first and THEN is evaluated for the mask. In this case, all new connections, using the same SNAT address will re-use those idle connections.
Hope this helps,
N
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com