Learn F5 Technologies, Get Answers & Share Community Solutions Join DevCentral

Filter by:
  • Solution
  • Technology
Answers

LTM: Multiple Source IP Addresses / Masks vor virtual server?

Dear community,

I'm trying to limit access to a virtual server to two subnets. Is there any chance for this? I tried in vain the values "10.10.10.0/24 10.10.20.0/24" and same with comma, semicolon and several others. But I always get the "Error parsing IP address" message.

Thanks for any help HP.

0
Rate this Question
Comments on this Question
Comment made 16-Oct-2018 by hpr 71

Sorry, I forgot: Running BigIP 13.1.1 .

0

Answers to this Question

placeholder+image
USER ACCEPTED ANSWER & F5 ACCEPTED ANSWER

Hi ,

you can refer the post https://devcentral.f5.com/codeshare?sid=28

0
placeholder+image
USER ACCEPTED ANSWER & F5 ACCEPTED ANSWER

You can't do this in the source address field of the VIP itself. You'd need either an iRule, CPM policy, or packet filter rule. Here's an example iRule using an address-type data group:

when CLIENT_ACCEPTED {
    if { not ([class match [IP::client_addr] equals "localusers_dg"]) } {
        reject
    }
}
0
placeholder+image
USER ACCEPTED ANSWER & F5 ACCEPTED ANSWER

Thanks guys! :)

0