Forum Discussion
Jonathon_Page
Aug 24, 2018Nimbostratus
Hi, I finally figured things out by using a mix of FastL4 forwarding and an iRule to turn SNAT on or off based on source and destination IP.
The FastL4 rule had a source of the VPN subnet, and a destination of any:any, scoped to the tunnel. The iRule was pretty simple, just an if that checked if from VPN and not to internal addressed, if so turn snat on, else set snat none.
Thanks to the posters about PBR and FastL4 as these pointed me in the right direction.