Forum Discussion

Sly_85819's avatar
Sly_85819
Icon for Nimbostratus rankNimbostratus
May 28, 2010

DMZ/Public facing GTM deployment assistance

Has anyone deployed GTM for public facing applications which are in DMZ (NATed). I am in the middle of deployment and confused with the way GTM works.

 

 

Local Data Center

 

Scenario - Both GTM and LTM are in DMZ (with private address).

 

I will be configuring public translation for GTM for DNS queries from Internet.

 

1. What IP address of LTM should I use for iQuery, private/public?

 

2. What will the VS address (public or private) on the server?

 

3. Where do I need to address translation. Server or Pool Member?

 

4. Where do I configure health monitor. Server level or Pool Level?

 

 

Local site -> Other Data Center

 

Scenario - GTM will talk to LTM and GTM at remote Data center.

 

1.What IP address do I need to use for GTM and LTM (public or private)? I can reach the systems using private IP over the WAN.

 

2. What will be the VS address (public or private)?

 

3. How iQuery will work? Over the Internet or WAN? If WAN, then how will it detect failure on the Internet path for the application (Internet circuit going down)?

 

4. Where do I configure health monitor. Server level or Pool Level?

 

 

I would really appreciate some help here.

4 Replies

  • Hello Everyone,

     

     

    Eagerly waiting for assistance. I would really need some help here. My implementation is pending.

     

  • TM will talk to LTM and GTM at remote Data center.

     

    1. .What IP address do I need to use for GTM and LTM (public or private)? I can reach the systems using private IP over the WAN.

     

    A: Again you can use private IP address

     

     

    I have some concern using Private IP. Assume a case where GTM's in DC A and DC B are talking over WAN and responsible for public facing DNS. If the Internet link for DC A goes down, DC B can still reach DC A over the WAN and assume that the app is UP (say on LTM). Dont you think that is the problem? I am thinking of using public ip for LTM addition along with translation IP. If I use public IP with private translation ip, what IP will be used for polling/probing?
    • Manish_Jain_573's avatar
      Manish_Jain_573
      Icon for Nimbostratus rankNimbostratus
      I am also having the same issue. Where GTM is behind FW and Servers are configured as Generic host, as we don't have LTM in place. However Health monitor is showing Down when using the Real IP as Public Rout able IP : (i.e. 200.220.220.220) and Translated IP is Private IP address (10.100.100.100). Please suggest what all configuration needs to be done so that GTM should show Server is UP.