NAT for Internal Servers for Internet Access - Default Route
Hello. I am a newbie with LTM so please excuse any misunderstanding of the technologies. I am trying to setup Internet access via the F5 Big IPs and as I understand it need to use the Forwarding IP virtual server type along with SNAT. I have read a many of the posts on here I could find on this topic but cannot relate those specific setups to the problem I am having.
We have an internal pool of servers 192.168.1.192/27 on VLAN "f5_internal". These are already part of a pool and we have defined Virtual Servers for load balancing queries. However we also want these internal hosts to have their required internet access via the F5.
We have a default route installed in the F5 pointing at our connected core router. The hosts on subnet 192.168.1.192/27 have a default route pointing at the Internal Floating IP 192.168.1.192
The SNAT pool "SNAT_Pool_Internet_Access" is defined just as a public IP that we want the F5 to translate the outbound HTTP flows from the internal hosts to. All I have done is create the pool and enter this public IP in the member list.
So far I have made configuration chnages using the GUI and I have attached a screenshot of configuration form the GUI. The CLI conifguration is also listed below for the VIrtual Server.
The Virtual Server with name "SNAT_Internet_Access" has availabilty status "Unknown (Enabled) - The children pool member(s) either don't have service checking enabled, or service check results are not available yet"
Can anyone please advise if there is a problem with the configuration I've used? I've also tried using "Source Address Translation" type "Auto Map" just for testing purposes in the Forwarding IP Virtual Server configuration but get the same error/virtual server status.
ltm virtual SNAT_Internet_Access { address-status no description "Source NAT Internet Access - Proxy Server Originated" destination 0.0.0.0:http ip-forward ip-protocol tcp mask any profiles { fastL4 { } } source 192.168.1.192/27 source-address-translation { pool SNAT_Pool_Internet_Access type snat } translate-address disabled translate-port disabled vlans { f5_internal } vlans-enabled vs-index 6 }