Brian_25776
Jun 23, 2014Nimbostratus
Replacing Stealthwatch Flow Replicator with LTM
Currently we have a Stealthwatch UDP Flow Replicator in our environment that we use to collect Netflow and Syslog UDP datagrams and send to various collection points. In the case of Syslog, we collect over port 514 and 516 and perform port translation to another port (i.e. 10524) where an instance of of RSYSLOG organizes data according to what port it is collected over.
My question is how can we replace the Flow Replicator with a LTM? I figure this will involve iRules, but since I'm relatively green to how to set this up, I felt I should reach out.
I will attempt to illustrate our network setup and the flow of our data that we wish to achieve.