Forum Discussion

jpo68_46862's avatar
Icon for Nimbostratus rankNimbostratus
Feb 17, 2011

Use SNAT with Monitor




I would like to know if it is possible to use the SNAT for the monitoring ?



Use @ip SNAT to make the tests of health check, not use @ip physical appearance(physics) of the interface of F5.



I cross a firewall for the monitoring Health check, and only @ip SNAT is authorized (source IP).



Thanks in advance for your answer.




2 Replies

  • From what I've seen, the only option would be to configure an external monitor using netcat to specify the source IP. Otherwise, you'll have to change the fw rules. I often use my boxes to telnet to pool members for testing and since that also uses the self-ip, it's a nice capability.
  • As Chris said, there isn't a native method for selecting the source IP of a stock monitor. You can use an external monitor which references a shell utility that allows for selection of a source address.



    However, you can't use shared IP addresses (floating self IP's, SNAT addresses, etc) in a redundant pair as that would cause IP conflicts when each LTM unit attempts to perform the monitor checks.