Forum Discussion

alb4trauss_2507's avatar
alb4trauss_2507
Icon for Nimbostratus rankNimbostratus
Mar 14, 2016

Channel to f5 virtual ip is open from client. New channel is created from server to client. Can I route back through f5?

Is it possible to route outbound traffic from a server non destined to a virtual server, to a virtual server?

 

Example:

 

An agent on a clientA registers through a virtual server address which has two pool nodes serverA and serverB.

 

serverA and serverB create a new channel directly to clientA to send updates. There is no out of box configuration for the application on serverA or serverB to specify outbound traffic to utilize the virtual server.

 

Is it possible to route the return traffic through the virtual server to clientA?

 

Our acl's are blocking the return traffic directly to clientA. However, the virtual address on the F5 is open to all devices on the network.

 

1 Reply

  • Hi alb4trauss,

     

    Hope you are looking for SNAT. Can you show me your VIP configuration. If you need return traffic passthrough LTM, you need to use SNAT . So source will be nat and server will see source as LTM selfip(snat automap) or VIP(IRULE) or pool of IPs(snat pool). Also, you should have routes from servers to LTM