Forum Discussion
SNAT - same VLAN ?
If you don't SNAT, the source address of the requesting client will get passed straight on through to the server. And then the server will see the client as a non-local IP address and use it's default gateway to respond to, bypassing the load balancer.
Asynchronous route. Game over.
I always thought the same thing Raj. I think the L2/L3 is getting muddled.
How I've talked myself into believing it is that the server gets the frame and strips it off and throws it away. When it goes to respond it creates a packet...addressed to the original source IP. So then it makes its decision - is this thing going local or remote and creates a new frame of who it needs to send it to. In this case, the [now] destination IP is remote so it builds its frame with a destination MAC of its default gw.
It doesn't reuse the old frame, that's long gone...so doesn't respond to the F5.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
