Forum Discussion

acharogiannis_2's avatar
acharogiannis_2
Icon for Nimbostratus rankNimbostratus
Feb 22, 2018

AFM and LTM guest communication method

Hello,

 

We are trying to setup a new BIG-IP with two guests. One will be running LTM and the other one AFM. The plan is for the traffic to hit the LTM guest, which will then send the traffic to the AFM guest and the AFM guest will forward it where it needs to go.

 

The AFM guest needs to act as a typical firewall, ie. just simple global policies.

 

The question is, what is the best way to set this up? Do we need to create VSs on the LTM that will have as nodes some VSs on the AFM for example?

 

Also, does the AFM need VSs, since it will only route traffic based on global policies?

 

Thanks for any help provided :)

 

1 Reply

  • To be honest it makes more sense for me to place first AFM, filter out all the traffic there to the LTM and then use this one to load balance the traffic internally.

     

    Answering your question, yes you should configure as nodes the AFM virtual server IPs.