Forum Discussion
Spidey_29396
Apr 23, 2012Nimbostratus
re: Problem in making F5 self IP as a gateway
I have this problem. I attached simple diagram of their set up. Original setup, the core router is the gateway of all the servers and we are using SNAT at VIP to return traffic to F5. The server admin needs to monitor the source ip of the clients connecting to server. We have to eliminate SNAT and make the F5 Self IP as gateway. After changing the gateway of servers to F5 self IP, the servers were not reachable from client but reachable from F5.As per client, need to enable proxy arp in F5 to relay mac-addresses of servers to core router.
- nitassEmployeeAfter changing the gateway of servers to F5 self IP, the servers were not reachable from client but reachable from F5.it works with external client (one which is not in same subnet as the bigip/server), doesn't it?
- Laudec_55181AltostratusHi Ferdz, why not use the HTTP profile option of X-Forwarded-For to insert the original SRC IP into it, so the Server admin can view it? That way you can still use SNAT, and preserve the SRC IP.
- nitassEmployeei guess it is not http traffic.
- TechgeeegNimbostratusCan you provide the network diagram ... I am sure this is not a very difficult situation you just need to play with routes or VS to make all of this work.
- HamishCirrocumulusI can't see the diagram. However I'm not convinced proxy-arp is your solution.
- Helena_101649Nimbostratus¿did you correctly configure the forwarding virtual server? I have this implemented in several boxes and works fine.
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects