Forum Discussion
Source NAT
Both "Allow NAT" and "Allow SNAT" should be enabled/checked in the pool config. What do you mean by "I have chosen VIP as NAt IP"? A SNAT should use an address, a self-IP address if using automap, that is in the same subnet as the real server (or at least an address that the real server can route back to). With SNAT automap enabled, run a TCPDUMP capture:
tcpdump -lnni 0.0 [additional filters]
where [additional filters] is anything you may need to focus in on specific traffic (ex. port 80 and host x.x.x.x and host x.x.x.x). What you want to see is client traffic arriving at the VIP - source address is the client's IP and destination in the VIP's IP. Then (again with SNAT automap applied) traffic arriving at the server - source address is the internal self-IP of the F5 and destination is the server's IP. With that you should see response traffic flow back the same direction it came.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com