Forum Discussion

Joetobai_247696's avatar
Joetobai_247696
Icon for Nimbostratus rankNimbostratus
Feb 03, 2016

Virtual Server not forwarding Source IP

Hi All,

 

Need help, I have currently have a VIP for proxy traffic.. Clients connecting to Web appliances, Nothing fancy standard type, port 8080

 

I basically want to replicate VIP but using different IP addressing, Vip, pools, self ips etc

 

I have new VIP up running but it will only work if auto map is turned on, I want to keep source IP address..

 

Just a few things which might have impact ??

 

There is already self IPs with /8 mask in use which over run the new IP range that I'm using. There is also a Forwarding VIP in use for certain Vlans.

 

Any help appreciated

 

J

 

3 Replies

  • If you enabled automap and that solved it 9/10 I'd guess that the server side does not had default routes back via the LB or that the server side and client side is considered to be on the same subnet.

     

    /8 is a huge subnet so that could actually point to the client and server being on the same network. Out of curiosity, why do you have such a big one?

     

    It'd help if you could specify your network setup and ltm virtual configs from the config file.

     

    /Patrik

     

  • You're not giving us much to work on. Can you please describe what situation you are trying to solve? If it doesn't work without Auto Map enabled, I'm guessing the F5 is not acting as the default gateway of your proxies, which is required in order to avoid SNAT. Please note that you can inject "X-Forwarded-For" for use tracking and later extract this from the request forwarded to your proxies (I know for certain you can do this with Squid, Cisco Ironport and Trend) More info about how to configure this on your VIP here: https://support.f5.com/kb/en-us/solutions/public/4000/800/sol4816.html
  • I have feeling that if I add route on BIG-IP for the new subnet it might fix issue, Is there any risk this will affect current live VIPS