Forum Discussion

Amit585731's avatar
Amit585731
Icon for Nimbostratus rankNimbostratus
Sep 22, 2015

Regarding traffic from node to Internet

Hi Team,

 

We have an issue where we are trying to access internet from one of node which is behind LTM. Unfortunately this is not working. Below is the diagram of our network

 

Internet <<-- Firewall <<-- LTM <<--switch <<-- node

 

We are using LTM as router to direct all default traffic to Firewall so it can be forwarded to internet. But while trying to accomplish this we are seeing LTM dropping traffic. While in wireshark logs I am seeing traffic is natted to its own subnet self ip created on LTM (i.e. backend IP of LTM) and not to front end IP of LTM (which is pointing to firewall).

 

Please suggest if any changes is reqd?

 

We have created Forwarding VS and there is static route pointing to firewall.

 

Thanks.

 

1 Reply

  • Hi, if using HA do you have a floating self-ip on the front end network? The F5 will prefer floating IPs over non-floating even if they are not on the egress vlan when using snat auto map. I assume the F5 has the correct default route pointing to the firewall? I would also try using a SNAT pool with an IP from the front end network and see if that works.

     

    cheers