Forum Discussion

jpo68_46862's avatar
jpo68_46862
Icon for Nimbostratus rankNimbostratus
Feb 17, 2011

Use SNAT with Monitor

Hello,

 

 

I would like to know if it is possible to use the SNAT for the monitoring ?

 

 

Use @ip SNAT to make the tests of health check, not use @ip physical appearance(physics) of the interface of F5.

 

 

I cross a firewall for the monitoring Health check, and only @ip SNAT is authorized (source IP).

 

 

Thanks in advance for your answer.

 

 

Regards,
  • From what I've seen, the only option would be to configure an external monitor using netcat to specify the source IP. Otherwise, you'll have to change the fw rules. I often use my boxes to telnet to pool members for testing and since that also uses the self-ip, it's a nice capability.
  • As Chris said, there isn't a native method for selecting the source IP of a stock monitor. You can use an external monitor which references a shell utility that allows for selection of a source address.

     

     

    However, you can't use shared IP addresses (floating self IP's, SNAT addresses, etc) in a redundant pair as that would cause IP conflicts when each LTM unit attempts to perform the monitor checks.

     

     

    Aaron