Forum Discussion
VIP to VIP pointing
Hi Guys,
We have an external device consisting a VIP say ve(e stands for external) pointing to a pool pe. We also have an internal device consisting a VIP say vi(i for internal) pointing to a pool pi pe is no longer in use and non existing (removed) pi is in use and active (so ve is down as pool assigned to it is non existing pool) Now the issue is to point ve to vi (external VIP to internal VIP) .
What should be the best way to point from external VIP to internal VIP. my assumption is like making the vi ans pe and assigning that to the ve, if thats the case then what should be the configuration for the pool if not what is the best solution i can get.
Any help is much appreciated Thanks in advance.
- Kevin_StewartEmployee
The easiest thing would probably be to make the internal VIP address the single pool member in the external pool. But curious, where would you have the traffic go upon reaching the internal VIP if it has no pool?
- Vivek_59_135097Nimbostratus
@kevin forst of all thanks again for your quick response internal VIP have pool external doesnot have (removed). I thought the same way but in that case you missed my question continued with that. If i need to add the internal VIP as single pool member then what would be the default settings and configuration is it same as the intenal pool members? Configuration what i mean is monitor. Should i create a new monitor with same config as internal or is there any default for that? please explain
Thanks
- Joe_MNimbostratus
Are the 2 VIPs on the same F5? If so, why not just attach the internal pool to the external VIP? if they are separate devices, then I agree with Kevin. another alternative, if this is HTTP, is to use a redirect iRule.
- Vivek_59_135097Nimbostratus
@Joe. thanks for your reply. I already mentioned that they are on seperate devices in my question.
- Kevin_StewartEmployee
You're right, I did miss what you were saying. So you have an external VIP, and internal VIP, and an internal pool. So create an external pool, assign the internal VIP's address as its single member, and assign that pool to the external VIP. As for monitoring, from the external VIP's perspective, the internal VIP is the endpoint service, so you can apply any monitor type that is appropriate for your application.
Also, to Joe's comments, this will only work if you're talking about physically separate devices. You cannot assign a VIP address to a pool on the same device. For that you'd use an iRule and the virtual command.
- Vivek_59_135097Nimbostratus
@Kevin Thats a great answer thanks for your response and help.
- Vivek_59_135097Nimbostratus
@kevin I tried to add the internal VIP as external pool member and tried to assign a monitor but it shows the status as down. Is there any other possible way. Because the monitor was up before for original external pool members but is down now. What could be the problem?
as kevin mentioned, is this on one device or multiple big-ips?
what kind of monitor are you using?
- Kevin_StewartEmployee
Can you access the internal pool member application through the external LTM without the monitor applied? At this point it could still be a connectivity/routing issue, or perhaps something wrong with the monitor.
- Eduardo_de_OlivNimbostratus
Hey guys, I have the same problem. Let me explain, I have two Bigip and active-active, one of them is LTM + Webaccelerator and another is running ASM. SO I have two traffic groups so if one of the bigips get down another bigip assumpt the services but has some problem when the services is running at the same appliance... I'm trying to understand what happens but i thing that the problem is the vip poiting to vip on the same bigips... so when I poiting to a vip that is on another bigip works perfect but when both vips are running on the same bigip it don't works.
Someone has some explanation??
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com