Forum Discussion

Steve_Do_138091's avatar
Steve_Do_138091
Icon for Nimbostratus rankNimbostratus
Nov 27, 2013

Can not Access the Web Servers Pool Member on LTM

Hi Everyone,

 

I have just create the web server pool with 2 pool members : . The first pool member IP address : 192.168.1.15:80 subnetmask : 255.255.255.0. . The second pool member IP address : 192.168.1.16:80 subnetmask : 255.255.255.0. . The Virtual Server : 192.168.1.100:80 subnetmask: 255.255.255.0 . The Internet interface IP address : 10.86.85.63 subnetmask : 255.255.254.0

 

So please help me, i want to access the webserver via Internet. Please tell me the way to do on BigIP Local Traffic Management (platform 3900)

 

9 Replies

  • Your Virtual Server IP is the IP your client have to reach. So in your case, it might be an IP in the subnet 10.86.84.0/23.

     

    You can keep an private IP on your Virtual Server but you have to route your traffic through your BIG-IP.

     

  • Hi Thomas,

     

    I have changed the virtual server Ip address : 10.86.84.33 (they don't let me be able to choose the subnet for the virtual server) . But, when i try to ping the internet interface : 10.86.85.163/23 from 10.86.84.33, it shows that : "destination is unreachable " . Please help me.

     

  • From where are you pinging the 10.86.85.163 ?

     

    If it's from your BIG-IP be sure that you have a self-ip defined into this network.

     

    And you might also check on which vlan your virtual server is listening (all vlans, internal, external... ?)

     

  • Hi Thomas,

     

    I used another laptop with the IP : 10.86.84.42 subnetmask : 255.255.254.0, then i can ping 10.86.85.163/23, but i can not ping the Virtual server IP address : 10.86.84.33 (that i have just manually assigned for virtual server). So, Can i keep the private IP "192.168.1.100" for the virtual server and use NAT to translate 192.168.1.100 via 10.86.85.163 ? Please help.

     

  • Your BIG-IP has to to able to send back the traffic. So if you NAT the traffic via 10.86.85.163 you have to do destination and source NAT.

     

    Could you send informations on your topology (just to be sure your big-ip network configuration is good).

     

  • Hi Thomas,

     

    Let me show you all my Big-IP IP address to let you know : _ The MGMT interface IP : 192.168.1.245 subnetmask : 255.255.255.0 _ The Virtual server IP : 192.168.1.100 subnetmask : can not assign cause BigIP system does not have. _ The first Pool member (Interface 1.1) IP : 192.168.1.15 Service Port : 80 _ The Second Pool Memeber (Interface 1.2) IP : 192.168.1.16 Service Port : 80 _ The Internet Interface (Interface 1.7) IP : 10.86.85.163/23 _ VlanA has untag traffic : Interface 1.1 and interface 1.2 _ I have created the virtual web-server on my laptop and plug into port 1.1, but the interface is always offline when i see it in Configuration Utility via Pools (Statistic). I have no idea how to make it online.

     

    Please Help me.

     

    • SanjayP's avatar
      SanjayP
      Icon for Nacreous rankNacreous
      Make sure connectivity is there between BIG IP and servers. If servers gateway is other than F5, you need to use SNAT feature. if self IP subnet associated with external VLAN has has public IP subnet, you can straight away use it. If it is private, you need to NAT it with public IP you are keeping to use it in internet. NATing should be done on respecting edge device (FW or l3 router) depending on your network topology.
  • Emad's avatar
    Emad
    Icon for Cirrostratus rankCirrostratus

    why VIP and Pool members are in same VLAN.? If required then NAT ur traffic along with Internet one.

     

  • Emad's avatar
    Emad
    Icon for Cirrostratus rankCirrostratus

    For that Purpose You have to Create Two Vlans in LTM. For Example.

     

    Create VLAN_1 on interface 1.1 Create VLAN_2 on interface 1.2

     

    Assign Self IP from IP range 10.86.85.x or you can assign it as well. for VLAN_1 Assign Selp IP from Ip Range 192.168.0.1/32 for VLAN_2, Do not use 192.168.1.x as its being used for MGMT interface.

     

    Assign IP address 192.168.0.15 to Interface 1.2, and create a pool with member 192.168.0.15.

     

    Create VIP with IP 10.86.85.x and assign that pool member to it. Also validate if you need to add any route for the device. it would be better if you connect switch with interface 1.2 and then connect your laptop or any other machines with it.