Forum Discussion
route between vlans with snat
couple of suggestions;
-
couldn't you put vlan 905 on the switch and let the internal servers route direct to other internal services, like DB etc. Then for traffic leaving the network, NAT on the external firewall. Vlan905 will then be able to talk to vlan6 servers or F5 VSs via the switch g/w.
-
stick to one vlan if you can, i.e. vlan4 for the client side traffic and just use other address space for the VSs and a route on the switch for them via vlan4 self-ip.
-
if the above doesn't work for you then I guess you do selective snat based on egress vlan but you solution is going to get more complex. For this you would use a irule and something like [LINK::lasthop name] to grab the egress vlan then use that to determine what SNAT to use based on class lookup or similar..
cheers
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com