Forum Discussion

Topias_Laukkane's avatar
Topias_Laukkane
Icon for Nimbostratus rankNimbostratus
Sep 29, 2005

SCTP Support

Hi,

 

I need to get my big-ip box to forward sctp signalling from an address in the internal vlan to an address in the external vlan.

 

I've created the "Self-IP"s and SNATs for this, and now I can ftp just fine from the internal side to the external, but sctp messages (..and icmp "pings") are dropped at the Big-IP.. (I can see an "unreachable - admin prohibited" response to pings)

 

 

Do I need to start learning about iRules in order to accomplish this or any other ideas?

 

 

Any comments would be highly appreciated, especially if anyone has experience on sctp with 9.x..

 

 

brgds,

 

TL

4 Replies

  • snats by default only allow tcp/udp, you'll need to alter, but this can be done without iRules.

     

     

    In the GUI

     

    SYSTEM->GENERAL PROPERTIES->LOCAL TRAFFIC->GENERAL

     

     

    See attachment
  • no problem, glad I could help! I would encourage you to spend time learning iRules anyway, you may come up with a need in the future, better to be prepared for it!

     

     

  • I have the BIG-IP LTM system running version 9.4.3. Will this version support SCTP load balancing and if not what version will I need?
  • SCTP Load Balancing support started in v9.4.2.

     

     

    http://support.f5.com/kb/en-us/solutions/public/3000/800/sol3800.html?sr=16761186