bigip
29 TopicsUpgrade F5 BIGIP
Dear Team, I hope you all doing well. Kindly note that i want to upgrade my bigip tenant from 17.1.1.3 Build 0.70.5 to new 17.1.2 and when i try to download the software there are several options. 17.1.2 17.1.2_Tenant_F5OS and i want to know what are the difference between these two ? Just to let you know my setup is like this rSeries2600--->F5OS----->BIGIP. can you please clearly let me know which one shall i follow ?and what are the use cases ? is both ways valid for my setup ? Please find the attached the picture and also the URL below. appreciate your support. Regards,Solved552Views0likes12CommentsHow to Renew F5 Device Certificate
Hi Team , We have self-signed device certificate which is going to expire soon. Can you please let me know if I can click on renew and update the expiry date ? Please let me know the correct procedure to renew the device certificate . System ›› Certificate Management : Device Certificate Management : Device Certificate ›› server.crtSolved532Views0likes6Commentssome questions on device Trust Certificate?
hi, I have two questions on device trust certificates (client cert). why there are duplicate certificates on Device Trust Certificate list? I saw duplicate gtm device certificates in LTM devices. is it true that only gtm device certificate is sent to ltm device, and reverse "no" -- no ltm device certificate in gtm Device Trust Certificate list? I checked out gtm and ltm devices for our different regions, no ltm device certificate is on any gtm Device Trust Certificate list. Can someone please help advise, thanks in advance!Solved395Views0likes5CommentsHow are memory and disk allocated to different modules on bigip appliance?
hi, when doing "Resource Provisioning", the memory and disk space are auto allocated to LTM and ASM are shown as below. The amount of Memory and disk is minimum requirement, right? When a huge number of virtual server will be created later, will appliance auto allocate more spare memory and disk to the module? And what is he management module responsible for? Is it responsible for packet forwarding? should we set "Provisioning" to "Medium" or "Large" if the throughput is larger than 1Gbps? Can someone please advise? thanks in advance!334Views0likes7CommentsConfiguration Synchronization across BIG IPs
Hello Everyone, I'd like to share a situation and would love to receive some suggestions. I do have a big ip env where I want to replicate the configuration of a Active-Standby cluster into another big ip instance (check attachement). Cluster contains BIG-IP-A (Active) and BIG-IP-B (Standby) and BIG-IP-C (Standalone). The goal is to have a duplicated configuration of all LTM and ASM instances (VS, nodes, pools, policies, learning settings, certificates ...etc) between BIG-IP-A (or B since they form a synchronized cluster) and BIG-IP-C. This replication should be done rergularly and manually. My initial thought is to create a new device group of Sync-Only type between the BIG-IP-A and BIG-IP-C and specify the sync type option as Manual. I wasn't sure that this would be enough for this operation to get all the needed configuration replicated into the destinated BIG-IP-C. What do you think ? if this method is correct to start with, what are your thoughts on how to improve and get the best out of it ? if not, I'm open to any new suggestions. Thank you in advance for taking the time to read this and for your ideas,320Views0likes2CommentsF5 r10800 not connected to Cisco Nexus 9000
10G and 25G interfaces on F5 rSeries 10800 (F5os version 1.5.2 ) port fail to establish links with Cisco Nexus switches C93360YC-FX2 (nxos version 9.3.5) both side module model are: type is SFP-H25GB-SR name is F5 NETWORKS INC. part number is OPT-0053 is ther a solution to this problem??316Views0likes4CommentsWhat is the best practice to deploy single Tenant in F5 rseries?
Hi, we are going to deploy new rseries 5k with single Tenant. What is the best practice to setup? I plan to setup like below, can someone please advise whether it is correct or not? And I have question on auto disk space and memory allocation. Thanks in advance! Allocate all the disk space to this large single tenant Allocate all the memory to this single tenant within the tenant, set "Large" to "Mgmt" module for the rest modules: LTM, GTM , ASM , set "Normal" under Resource Provisioning". Seems the system automatically allocate disk space and memory to each module. Based on the amount of disk space and memory allocated to these modules, seems there are still a lot spare diskspace and memory. Will these modules automatically share the rest spare diskspace and memory when necessary?Solved299Views0likes2CommentsRenew BIG-IP device SSL certificate
hello Team, I am going to renew our BIG-IP device SSL certificate, but this time we have GTM so we also need to update the GTM side. This is what I am planning Renew the BIG-IP device SSL certificate via cli on config/httpd/conf/ssl.crt/server.crt Restart the httpd service I am planning to update the GTM via GUI DNS -> GSLB -> Servers -> Trusted Server certificates -> Import -> Append -> paste the new cert Restart the big3d and gtm service Question is, is this correct way? also will this also update my cert on big3d (/config/big3d/client.crt)? If not, do I need to update the cert on big3d? Thank you!244Views0likes2CommentsUpgrading BIGIP 2000S to R2600
Hi, I have a pair of BIGIP 2000 licensed with LTM and need to upgrade the hardware to R2600. I have some backend nodes pointing to F5 as their gateways. 2000 appliances run code v15.1. Will it be doable to archive CSF file of old F5s, edit some names related to 2000s like hostname and license with new names of 2600s, load the file on new F5s? I'm thinking to use different mgmt IP but keep all other configuration of VS, Vlans, IPs as they are. Also, what about license and certificate files? Thank you!199Views0likes2CommentsSNI Sites not taking correct certificate.
I have configured one VIP with two certificate aks.test.com aks4.test.com On SSL profile for aks.test.com i have enabled SNI feature and aks.test.com is working fine taking correct certificate (aks.test.com). but aks4.test.com having not secure error on browser and taking the certificate of (aks.test.com). Could someone please help what could be the issue in this case.193Views0likes8Comments