Forum Discussion
hooleylist
Aug 28, 2008Cirrostratus
I don't think there is a way to apply/disable a NAT from an iRule. However, the behavior you're seeing is expected assuming the destination IP matches a VIP with SNAT enabled:
SOL9039: A virtual server with a SNAT pool takes precedence over matching the NAT (Click here)
I try to avoid NATs altogether. VIPs and SNATs should give you better functionality, including more control over which source and destination hosts are able to communicate directly. You can get some ideas on allowing admin access from SOL7229:
SOL7229: Methods of gaining administrative access to nodes through the BIG-IP system (Click here)
You can take a similar approach for allowing the nodes to access external hosts.
Aaron