Forum Discussion
VIP not functioning on port 8083
I have a firewall sitting in our network before the F5 loadbalancer. We have natted a public IP to a private IP (137.x.x.x - 192.168.162.31). The private IP is then used on the F5 as a VIP address listening on the port 443.
The members of the pool that are assigned to this VIP are listening on port 8083. Member ip address is 10.13.x.x:8083
I have added client ssl profile to the VIP since its a HTTPS VIP. From the LB i can ping the member IP addresses and i can also telnet to the member IP on port 8083 from the LB.
The connection is not working for me ... When i telnet to the public IP on 443 it works ...
Can anyone suggest what the problem would be? Can you suggest me some tcpdump strings?
2 Replies
- Arie
Altostratus
Is port translation enabled on the VIP?
- StephanManthey
Nacreous
Hi Ajit,
did you configure SNAT AutoMap for your virtual server? Asymmetric traffic flow is a typical reason for failing communication.
A tcpdump to track incoming traffic including serverside traffic would look like this:
tcpdump -nnni 0.0:nnnp -s 0 -e -c 1000 host
= no name/protocol resolution,-nnn
= dump on the internal interface,-i 0.0
= dump the internal ethernet trailer data and peer traffic (serverside traffic),:nnnp
= dump full packet including the ethernet trailer data,-s 0
= limit the dump to 1.000 packets,-c 1000
= one of many possible filters,hostThanks, Stephan
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com