Jan 26, 2011

One Arm Config

Need to config the following:



One armed configuration so the F5 needs to NATs


the users IP address to an IP on the F5 so that the app servers send


the response back to the F5 and not directly to the client.



This is nothing more than configuring SNAT correct?





  • Correct. Simply define a SNAT Pool and ensure the app servers have a route to the defined addresses through the LTM.
    Depending on the number of connections you are expecting, you can also just set the SNAT to 'automap'. Connections originating from the BIG-IP to an origin server will then be SNAT'd to the LTM's floating address (or non-floating if not HA) for the origin server's subnet.