Learn F5 Technologies, Get Answers & Share Community Solutions Join DevCentral

Filter by:
  • Solution
  • Technology
Answers

How to add firewalling

We have a pair of F5 4000s LTM in redundant pair. what can we do to add firewall services to the 4000s

0
Rate this Question

Answers to this Question

placeholder+image
USER ACCEPTED ANSWER & F5 ACCEPTED ANSWER

Firewall feature requires AFM licence on each appliance.

0
Comments on this Answer
Comment made 06-Feb-2018 by Denis Logan 1

Can Big-IP 4000S' with LTM and AFM replace a typical firewall and service even for non-load-balanced devices?

We had Cisco ASAs and added F5 4000S' with LTM for our server farms. Now that we need to replace the Cisco ASAs and wondered if the AFM will suit in place of real firewalls. We use public IP addresses on subnets (inside, outside and dmz interfaces) along with all virtual and real server IPs. We are not using natting or patting at all on our network.

0
placeholder+image
USER ACCEPTED ANSWER & F5 ACCEPTED ANSWER

Hi Denis,

First, check whether you have a valid license for AFM or not under System --> License

If you already have a license for AFM feature, please check the System--> Resource Provisioning section from the GUI and verify that Advanced Firewall (AFM)'s Provisioning option is setted as "Nominal".

0