Forum Discussion

Sunkwan_Kim_147's avatar
Sunkwan_Kim_147
Icon for Nimbostratus rankNimbostratus
Jun 19, 2014

VLAN GROUP , ARP ISSUE, and can't add peer authority device

Dear all.

 

I wonder that what determine VG mac address(peer) in fdb table, when i configure vlangroup redundant system.

 

Is there any criteria ??

 

and..

 

when the vlans(ex, in) are included in vlangroup, why i can't add peer authority device.

 

I type the peer addres(peer self ip) and click retrieve device information button.

 

but can't get peer information just hang clock niddle.

 

why? is this normal?

 

3 Replies

  • Kevin_K_51432's avatar
    Kevin_K_51432
    Historic F5 Account

    Hi Sunkwan, Looks like to establish trust you must use the management IP address (not self IP):

    ===========================================================
    Establishing device trust
    Before you begin this task, verify that:
    
    On the Main tab, click Device Management > Device Trust, and then either Peer List or Subordinate List.
    Click Add.
    Type a device IP address, administrator user name, and administrator password for the remote BIG-IP device with which you want to establish trust. The IP address you specify depends on the type of BIG-IP device:
    If the BIG-IP device is a non-VIPRION device, type the management IP address for the device.
    If the BIG-IP device is a VIPRION device that is not licensed and provisioned for vCMP, type the primary cluster management IP address for the cluster.
    If the BIG-IP device is a VIPRION device that is licensed and provisioned for vCMP, type the cluster management IP address for the guest.
    ================================================
    

    From

    https://support.f5.com/kb/en-us/products/big-ip_ltm/manuals/product/bigip-device-service-clustering-admin-11-5-0/5.htmlconceptid

    Hope this offers some help, Kevin

    • Sunkwan_Kim_147's avatar
      Sunkwan_Kim_147
      Icon for Nimbostratus rankNimbostratus
      Thanks, Kevin.K. i have used self ip to establish device trust .. but it works~ in manual , recommended configuration is use management-ip when establish device trust .. right? many thanks .
  • Kevin_K_51432's avatar
    Kevin_K_51432
    Historic F5 Account

    Hi Sunkwan, I notice two things in the manual concerning the importance of management-ip:

     

    This from above:

     

    "If the BIG-IP device is a non-VIPRION device, type the management IP address for the device."

     

    And this from the DSC prerequisite worksheet:

     

    "Management IP addresses Each device must have a management IP address, a network mask, and a management route defined."

     

    https://support.f5.com/kb/en-us/products/big-ip_ltm/manuals/product/bigip-device-service-clustering-admin-11-5-0/3.htmlunique_1627883324

     

    Hope this is helpful, Kevin