Forum Discussion
rpalacios_79340
Altostratus
Jan 27, 2010Trunk setup for Cisco 6509 and F5 ltm 1600
Hello guys,
I've finally reached a point in my environment where I THINK I may need to setup a trunk between 2 Cisco 6509 core switches and 2 F5 ltm's (paired).
Currently my ltm's are in a mesh config connected to both 6509's. All ports in the 6509 are configured as access ports and belong to an app vlan and dmz vlan.
So I have been creating pools on these vlans without any issues as they are directly connected.
The problem: We have multiple vlans in our environment and now we have a need to load balance mysql servers which reside on a vlan that is NOT directly connected to the F5's. Meaning that the self ip's are configured for our app's and dmz vlans.
It sounds logical to me to setup a trunk between the F5's and the 6509's and allow all required vlans for future load balancing needs.
1. Are there any know issues I need to be aware of when I introduce the trunk?
2. What is the best mesh config? Should ltm-A go to 6509-A and ltm-b go to 6509-b?
3. Are there any known issues with looping, spanning tree, etc?
4. What would be the recommended settings for LACP?
5. Is there a better method?
All is appreciated!
Thanks,
-rp
- Hamish
Cirrocumulus
Posted By rpalacios on 01/27/2010 11:05 AM
- Nick_T_68319
Nimbostratus
I run a similar setup with 6509's and LTM pairs. LTM-A goes to 6509A and LTM-B goes to 6509B. I use the two fiber modules in an LACP group, and trunk the vlan's to the LACP group. - rpalacios_79340
Altostratus
Thanks for the replies guys. - Nick_T_68319
Nimbostratus
Well you won't be able to LACP them, and i think you may run into spanning tree issues there since your A and B switch are probably running different spanning tree priorities, but i am not a network expert. I think if you had one interface to each, you have to set the priority lower on one, to force traffic through one interface when it is up. - Hamish
Cirrocumulus
Spanning tree will sort itself out, AS LONG AS you have STP passthrough configured (Or if you know networks you could have the F5 do STP as well. But that's not always a simple config. You want to make sure you know exactly what's going to happen with your root bridge in all situations.
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects