Forum Discussion

Jim_Betts_47293's avatar
Jim_Betts_47293
Icon for Nimbostratus rankNimbostratus
Sep 18, 2014

Using GTM with Cisco ASA units

Hello:

 

I have two ISP links (each with their own address space) connected to my GTM/LTM cluster. Cisco ASA boxes don't play well with multiple ISP links so I'd like to put my ASA units behind the GTM/LTM cluster so that clients could connect from either ISP.

 

Common sense says that I should be able to define VIPs for each ISP and send the requests to my ASA pool, but I suspect (call me cynical) that it's not quite that simple.

 

I've asked ASK F5 a dozen times over the years for this particular solution but haven't been able to get a straight answer. Is there any solution document, web page, or scribings from an Albanian monk that a person with mid-range F5 and ASA skills could use to set this up? I've got numerous web servers working well in this configuration but could really use some help getting my ASAs behind my BigIP.

 

Thanks,

 

Jim

 

1 Reply

  • As luck would have it, it turns out to be easier said than done.

     

    Define a Performance Layer 4 VIP and point it at the pool of ASAs. Set the protocol to All Protocols and it works like a champ.