F5 BIG-IP how to disable ICMP redirect?
I noticed that in Network -> Packet Filtering one can enable checkbox "Always accept important ICMP". However I don't really see any other option to precisely specify which ICMP types and codes should be accepted. Precisely I'd like to accept fragmentation needed messages because jumbo frames are actively used in network but I don't want ICMP redirect messages to be accepted and interpreted. So is there any way to precisely point out which ICMP types should pass packet filtering?522Views0likes0Comments"Sweetening" packet filter insertion from TMSH to avoid conflicts
Hello everybody. From the WebUI, you can insert a new rule "After" an existing rule and they all get get spaced out nicely. In TMSH, you have to manually declare the order number and you get a complaint on a conflict. Trying to script up the insertion of new rules in TMSH so we get the same type of behavior but that looks like it'll involve harvesting/sorting and modifying all the current rules. Hate to reinvent the wheel if someone has done this already. Has anyone solved this problem yet? Cheers Bernie185Views0likes0CommentsWhat's the best way to manage a huge list of ip packet filtering?
Hi, we need to setup whitelisting for our ftp server. What's the best way to do this via paket filter or via iRules? BTW: Is there a possibility to enter comments in the packet filter rules set? Any help is appreciated. Marco325Views0likes4Comments