Good day all,
I had few doubts for ltm.
1) is a service with all ports allowed but an irule with limited ports secure? will the irule come into picture for the ports first?
2) any easy way to rename a virtual service?
thanks in advance.
Solved! Go to Solution.
I'm not going to answer your 1st question - I really don't understand what you mean by it.
For the 2nd - renaming a VS is not a straightforward thing to do - you have probably noticed that many configuration objects cannot be renamed from the GUI after you create them. But you can edit the configuration file directly and load it.
I see what you mean - as Daniel pointed out above, it is secure, but in the article everything is better explained. If you use an iRule (or policy), the TCP reset only happens after the 3-way handshake is completed. If you use a port list the handshake fails straigh away, which is better in terms of resource efficiency.
If I recall correctly, shared objects (address and port lists) appeared in version 14.