Forum Discussion
Outbound SNAT with private external address
Configuration should be like below: F5 (10.X.X.X) --- > Firewall (172.x.x.) ---> NAT should be on firewall for 172.x.x.x to 200.x.x.x
You need to configure as mentioned below:
- Configure F5 VIP and pool member should be 172.x.x.x. For example pool member is 172.1.1.1
- You should create NAT on Firewall for 172.1.1.1 and it should map to public IP 200.1.1.1
- F5 should have routes towards firewall
- Firewall should have route towards internet.
I hope this helps.
I assume the VIP is a 10.x.x.x addr on the inside? If that's the case, the F5 will perform the destination translation to the 172.1.1.1 outbound?
The destination IP that the 10.x.x.x servers will connected to could be any public IP. I should also mention that one of the other external legs of the F5 has a public IP range and connected to another interface on the FW. The default route for the F5 is pointing via this interface.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com