Forum Discussion

DESP3_317149's avatar
DESP3_317149
Icon for Nimbostratus rankNimbostratus
Jun 27, 2018

Restricting traffic to a virtual server

Hi guys,

 

I've been struggling to find a way to achieve this. We're looking for a safe way to expose our license server. I can proxy traffic without any specials settings (http profile to none, no SSL, etc) and by specifying the pool.

 

This is a Standard VS on port 8095. (Non-HTTP) I need to be able to control whoever connect to this port.

 

My first though was to use APM (We already have an APM to log in through different http ressource), but since APM requires an HTTP profile, it would not work. I also tried using MAC address, but the clients are on different VLAN, so I'm getting the MAC of the router.

 

Any ideas on how I could achieve this?

 

Thanks !!

 

1 Reply

  • Hi,

     

    If you can't set an HTTP profile that's means that you cant work at Application level, namely you can't use APM, ASM, or just Irule.

     

    So int this way your only alternative is a restriction by source IP, which is not very reliable.

     

    Can you tell me how have to acces to this license server? (What application and wich protocol) and from what PC (compagny PC) and form internal or external?

     

    we could secure the access otherwise.

     

    Regards