Forum Discussion

JVV_137012's avatar
JVV_137012
Icon for Nimbostratus rankNimbostratus
Apr 29, 2016

OneConnect mask 0.0.0.0

Hi All,

 

Theoretical question:

 

Can someone please give a couple of practical scenarios where the OneConnect mask of 0.0.0.0 is typically used?

 

Thanks,

 

Jatin

 

1 Reply

  • Hi Jatin,

     

    right now I'm not aware of any specific scenarios for different masks in the OneConnect profile. But the bigger the mask the more clients are theoretically allowed to use existing serverside connections. But keep in mind that when you are using SNAT, the OneConnect feature will be mapped on this IP-address. So with a standard SNAT automap the OneConnect mask doesn't matter, because all clients will share the same source-IP.

     

    But I have another question here, I can remember from the past (I guess it was already with version 9.x) that only a /32 mask in the OneConnect profile allows the BIG-IP to investigate each and every subsequent HTTP-request (required for specific iRule logic). Is this still valid in current versions (11.5.x or 12.x)?

     

    Thank you!

     

    Ciao Stefan :)