Forum Discussion
Eric_27403
Nimbostratus
Mar 31, 2014Routing isolation with vlans
Looking for a little help here, I have this design I need to setup on our LTM's (11.3HF8) and a bit stuck on routing. On the LTM front side coming from a Cisco ASA trunk are multipal DMZ vlans (d...
Apr 01, 2014
Hi!
We have solved this by using virtual forwarding servers that only listen to the VLAN we want them to.
To create a virtual Forwarding server for ie. VLAN 633:
- Create virtual server.
- Set type Forwarding.
- Destination: Network, Network address + Mask
- Replace the default value of listening to all VLANs to only listen to the external VLAN.
Now, providing that your default route would go to the ASA the F5 would forward all internal traffic hitting the internal interfaces to the ASA according to its routing table.
Note that you need one forwarding server per VLAN and that the external forwarding server would have to listen to all internal VLAN's.
/Patrik
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects
