Forum Discussion
moulingi_138795
Nimbostratus
Dec 31, 2013SNAT and Forwarding (IP) virtual servers
Hi
In following topology:
(Network) ==> Firewall ==> LTM ==> Servers
I've setup a 'forwarding (IP)' virtual server on the LTM to handle at once Servers=>Network traffic and Network=>Se...
nitass
Employee
Dec 31, 2013If I do setup snat at 'Virtual server' level, Snat will then apply for all connections hitting that VIP... So I will loose the real clients IP addresses in servers logs... right ?
yes but you can use x-forwarded-for http header.
sol4816: Using the X-Forwarded-For HTTP header to preserve the original client IP address for traffic translated by a SNAT
http://support.f5.com/kb/en-us/solutions/public/4000/800/sol4816.html
otherwise, you have to selective snat using irule or configure like what you did.
Selective SNAT
https://devcentral.f5.com/wiki/irules.selectivesnat.ashx
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects