Forum Discussion

JackBurton76_32's avatar
JackBurton76_32
Icon for Nimbostratus rankNimbostratus
Sep 19, 2017

Question about staged config changes - basically...which F5 device/app do I use?

We have about 100 LTMs, a few DNS, and a couple BigIQ. We have limited programming experience/knowledge/resources. Every couple of weeks we are logging in, manually copying all our staged config changes to varius LTM's during a change window. Typically these changes entail adding nodes to an existing pool. Sometimes, it entails creating a virtual, a pool, and the nodes under it.

 

Here's my dream: Prep all the configs during the week (as usual). Stage the configs somewhere, and schedule a task to deliver them to relevant LTM device. Then, for icing on cake, I'd like it to email me once the change has been applied.

 

If we use only the basic of tasks, adding existing nodes to a pool, what device/app would I use to do all this.

 

I'm confused over BigIQ, iControl, and iApps.

 

6 Replies

  • Without knowing more about your setup, its hard to come up with a ready-set-go solution. Have you looked at using a Sync-Only group for distributing changes?

     

    • JackBurton76_32's avatar
      JackBurton76_32
      Icon for Nimbostratus rankNimbostratus

      I'm unfamiliar with that concept. Is that a type of group created on each pair of LTM's that doesn't impact existing config, but the configs can be staged there? Any links you know of I could read about it?

       

    • Ian_Støttrup's avatar
      Ian_Støttrup
      Icon for Nimbostratus rankNimbostratus

      A Sync-Only device group contains devices that synchronize configuration data with one another, but their configuration data does not fail over to other members of the device group.

       

      As apposed to a Sync-Failover device group contains devices that synchronize their configuration data and fail over to one another when a device becomes unavailable

       

      The most common reason to use a Sync-Only device group is to synchronize a specific folder containing policy data that you want to share across all BIG-IP devices.

       

      Perhaps I have misunderstood what you need, but you can read more about device-groups here:

       

      https://support.f5.com/kb/en-us/products/big-ip_ltm/manuals/product/bigip-device-service-clustering-admin-11-5-0/6.html

       

  • Without knowing more about your setup, its hard to come up with a ready-set-go solution. Have you looked at using a Sync-Only group for distributing changes?

     

    • JackBurton76_32's avatar
      JackBurton76_32
      Icon for Nimbostratus rankNimbostratus

      I'm unfamiliar with that concept. Is that a type of group created on each pair of LTM's that doesn't impact existing config, but the configs can be staged there? Any links you know of I could read about it?

       

    • Ian_S__120053's avatar
      Ian_S__120053
      Icon for Nimbostratus rankNimbostratus

      A Sync-Only device group contains devices that synchronize configuration data with one another, but their configuration data does not fail over to other members of the device group.

       

      As apposed to a Sync-Failover device group contains devices that synchronize their configuration data and fail over to one another when a device becomes unavailable

       

      The most common reason to use a Sync-Only device group is to synchronize a specific folder containing policy data that you want to share across all BIG-IP devices.

       

      Perhaps I have misunderstood what you need, but you can read more about device-groups here:

       

      https://support.f5.com/kb/en-us/products/big-ip_ltm/manuals/product/bigip-device-service-clustering-admin-11-5-0/6.html