01-Jul-2021 14:26
Hello
I want to change a PEM policy rule.
Instead of adding source or destination IPs in the flow section, I want to use the custom option to point to a data group of the IP addresses.
This is due to the fact I have lots of IP addresses in the source\dst and some repetitive rules that the protocol and action differentiate one from another, so pointing to a shared data group of IP addresses from a single point makes sense to me, to avoid mistakes.
The thing is, I couldn't find anywhere the syntax of pointing to a data group
Thanks in advanced for any help.
06-Jul-2021 23:52
I admit that I have not worked so much with PEM but you can see (sections Creating Custom Classifications and Configuring PEM with Local Traffic Policies😞
AskF5 | Manual: BIG-IP Policy Enforcement Manager: Implementations
As you can use data groups in irules and local traffic policies and if possible do what you want from there: