Forum Discussion

Mike_Sullivan_2's avatar
Mike_Sullivan_2
Icon for Nimbostratus rankNimbostratus
Jan 09, 2009

SSH tunnel endpoint?

Greetings all,

 

 

Recall that sshd allows tcp forwarding. Can I thus use my LTM 9.x as an endpoint and forward to a pool over some other TCP service? Sort of like using the ssl client profile to forward to http?

 

 

Is it as easy as I think it is?

 

 

Just curious.

 

 

Thanks,

 

Mike
  • James_Quinby_46's avatar
    James_Quinby_46
    Historic F5 Account
    That's an interesting idea, worth mulling over a little.

     

     

    sshd doesn't actually run on the LTM*, so I think you'd need to have a virtual server configured with a pool that contains at least one sshd running. That's where ssh would terminate, so that's where port forwarding would happen.

     

     

    * - well, it does, but for administrative access. In practice, it's usually locked down to certain vlans during the initial configuration. I'm not sure that using the onboard sshd for port forwarding is A Good Thing.