Forum Discussion
Pool Members communication with B-party via F5 VIP
Dear All,
In general, the B-Party servers requesting data and F5 sending these requests to VIP pool members.
But in my case, we want VIP pool members to be able to send requests to B-party servers via VIP.
In this case all communications between VIP Pool members and B-party must be via VIP.
How to configure that the Pool members can send requests via VIP to B-Party nodes and B-Party response to VIP.
I will really appreciate your support and help in regard.
Thanks,
Rahmanullah
- RahmanullahDaouAltostratus
Dear Robinhood,
much appreciate your support and giving time to my issue.
I've added both our servers and B-Party server ip under New Pool, create new VIP and create SNAT(Translate address set to the VIP(there is no source addresses option) as well. but the issue's We've Site to Site VPN with B-Party which is on public ip so we can't reach the B-Party server ip. Will this solution still work?
Please have the scenario we want.
- robinhood555Nimbostratus
To configure VIP pool members to send requests to B-party servers via VIP and ensure all communications are routed through the VIP,
- Set Up SNAT (Source Network Address Translation):
- Configure SNAT on the F5 load balancer to ensure the VIP pool members use the VIP address when sending requests. This ensures that the return traffic from B-party servers is correctly routed back through the VIP.
- Navigate to Local Traffic -> Address Translation -> SNAT and create a new SNAT configuration.
- Configure Virtual Server and Pools:
- Ensure you have a virtual server (VIP) configured with the appropriate IP address and port.
- Add the B-party servers as pool members within this virtual server configuration.
- Modify Pool Member Settings:
- Edit the pool member settings to ensure they can initiate connections via the VIP. This might involve configuring health monitors and other settings to ensure persistent and reliable communication.
- Persistence Profile (Optional):
- If session persistence is required, configure a persistence profile to maintain session state between the VIP pool members and B-party servers.
- Apply the Configuration:
- Save and apply the configuration changes on the F5 load balancer.
Example Configuration Steps:
- Create a SNAT:
- Go to Local Traffic -> Address Translation -> SNAT List.
- Click Create and define a SNAT.
- Set the translation address to the VIP address.
- Specify the source addresses (VIP pool members' addresses).
- Configure the Virtual Server:
- Go to Local Traffic -> Virtual Servers.
- Click Create and define a new virtual server with the VIP address.
- Set the destination port and other relevant settings.
- Add the B-party servers to the pool associated with this virtual server.
- Edit Pool Members:
- Go to Local Traffic -> Pools -> Pool List.
- Select the pool and add B-party servers as members.
- Set Up SNAT (Source Network Address Translation):
- RahmanullahDaouAltostratus
Sure, I will create a new virtual server ip but do I need to put both our servers+B-party servers ips under new Pool and set Default Pool to new virtual server ip.
If you don't mind and have time to discuss it on skype. it. I may not be able to convey my message correctly here.
Skyp ID: Rahmanullah21
- RahmanullahDaouAltostratus
Really appreciate your response.
You mean I should bring the B-Party servers + our servers Ips under same Pool and create VIP?
Example:
Our servers: 192.168.20.100, 192.168.20.101,192.168.20.102, 192.168.20.103
B-Party Server: 10.10.20.100
New Pool Members: 192.168.20.100, 192.168.20.101,192.168.20.102, 192.168.20.103, 10.10.20.100
VIP: 192.168.10.200
If this is the configuration what will happen if B-Party send request via same VIP won't it hit the B-party server as pool member. because I will configure Round Robin? Both sides communication must be done via same VIP.
Our Servers<====> F5-VIP<====>B-Party
Sorry for taking your time...
- zamroni777Nacreous
you need to create a new virtual server for server-to-bparty flow.
you can use same vip address and port as long as you specify the source address (i.e. equals to your servers' address block)
- zamroni777Nacreous
create a new pool with B-party servers as the pool member,
then create a virtual server and assign the new pool to the new virtual server.
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com