Forum Discussion
What_Lies_Bene1
Oct 07, 2013Cirrostratus
I think if you changed the default gateway for those specific web servers to be the F5 (and made the F5's gateway the fw) then it would work without the need for SNAT, using just a single VLAN on the F5.
Inbound: FW --> F5 VS --> Server
Outbound: Server --> F5 --> FW
If you manage the servers through the same interface and don't want that to pass through the F5, just configure some static routes pointing directly to the f/w.