Forum Discussion

rdash_255282's avatar
rdash_255282
Icon for Nimbostratus rankNimbostratus
Aug 19, 2016

Accessing AWS workloads from F5 LTM installed in VSphere

Need help to setup F5 LTM for the following scenario.

 

We are using F5 11.6.1 version. We have installed F5 in vSphere and try to load balance AWS Instances. Can anyone guide us how what configuration we need to do in F5 LTM for this scenario to work.

 

6 Replies

  • some more info would be nice, you clearly understand what you want but others (me for example) might not.

     

    what exactly is an AWS instance, is that just a webserver running in AWS?

     

    how is the network setup further? you mention vSphere which means a local ESXi system? but AWS is cloud based, so how do these two relate?

     

  • Yes AWS instances means webservers running in AWS. Basically we are trying to load balance across cloud providers using BIG-IP LTM.

     

    We have installed Big-IP in Vsphere Data Center and have a Private subnet in AWS VPC which is connected to Vsphere through VPN tunnel. We have access to all instances running in the subnet from Big-IP console. We are able to access using curl command. We are getting http response from that node (AWS Webserver). But we create node for those instances (AWS) in Big-IP ant try to load balance, routing is not happening and requests are not forwarded to the instances. However Health check is passing for all nodes.

     

  • Are you missing a forwarding VS? BigIP is a default deny appliance, so create a forwarding VS for the subnet which matches that of your AWS backend instances. Enable that VS on the external/client-side VLAN.

     

    https://support.f5.com/kb/en-us/solutions/public/7000/500/sol7595.html

     

    (Update this thread if you already have it so others will know where not to aim with their shots)

     

  • so health checking is working for the nodes, is it working for the pools? are the virtual servers green?

     

  • so what happens when you try to connect to the virtual server?

     

    is Source Address Translation set to AutoMap?