Forum Discussion
Joern_Oltmann
Nimbostratus
Feb 11, 2013Restrict Access for outgoing connect
Hi all,
one question. My internal App-Server use Google Maps. So i would like to restrict only the Google Network for these Server. My first idea, a outgoing virtual Server on my Big IP. That w...
What_Lies_Bene1
Cirrostratus
Feb 11, 2013I agree with Nitass, you should configure a wildcard Virtual Server. You can then either user a Packet Filter or an iRule to restrict the traffic flow, for instance;
Create a Data Group (called destination_ips below) with just the IP addresses/networks
of the hosts you’d like to allow access to
when CLIENT_ACCEPTED {
if { not [class match [IP::local_addr] equals destination_ips] } {
reject }
}
You could also add a source host check to ensure only specific servers are permitted access.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects