Forum Discussion
3 Replies
- TayF5un_246984Nimbostratus
hi, You can use self-ip by changing port lockdown setting which is allow default or custom ( 22 and 443 tcp)
- crodriguezRet. Employee
As TayF5un indicated, you can use a self IP to gain administrative access your BIG-IP system, so long as you open it up for the appropriate ports - 22 and 443 being the default for command line and GUI access respectively. I would add that any self IP you do use should be non-public facing and ideally on a dedicated VLAN so that administrative traffic and application traffic do not compete for bandwidth. You can also further secure administrative access to the BIG-IP system using SSH and HTTPD allow lists. You can find a good reference guide here. (https://support.f5.com/csp/article/K13092)
- Emo_Gokay_22518Historic F5 Account
You might want to use "packet filters" under Network menu to lock it more specifically if you are allowing access to it through the self-IPs.