waterfall_10467
Nov 11, 2013Altostratus
Exchange_active_sync_issue
Hello ,
we have an issue with active sync. we are using f5 for load balancing for CAS.But real ip is being published to wan through our proxy and firewall is doing source nat to proxy as part of security and proxy is seeing single ip as source ip and proxy is sending single ip to f5. But f5 cannot load balance probably and so f5 is sending packets to single member due to persistence. is there a way to solve the issue with any i rule or Do we need to remove source nat config from proxy? if we remove nat from proxy, we need to accept any wan ip for load balancing. Could i please get your explanation. Can we do destination nat on the topology.
Clients --->firewall---> proxy---->f5----> cas nodes
Thanks,