F5 LTM and Juniper VPN Gateway
It's regarding Juniper VPN GW loadbalancing issue.
In this deployment, 4 VPN Gateways - PSA1, PSA2, PSA3, PSA4 are configured under LTM on ports 443 and UDP 4500.
Similarly, LTM virtual servers on port tcp 443 (layer-7) and UDP 4500(layer-4).
Also, source address persistence enabled across services 443 and 4500, so as to ensure client connections served by same PSA on 443 and 4500.
All profile Timeout(https/udp) and persistence has been set as 2 hrs as per requirement.
Usually, client connections will start with 443 and after 15 secs of negotiation and session establishment, further client will continue to use the service on udp 4500. It is the expected behaviour.
This solution was working fine with Cisco ACE and Juniper VPN setup.
While migrating it to F5 LTM and Juniper VPN setup, it is observed that sometimes, vpn sessions are not shifted to udp4500 and it continue to use 443.
What might be the cause for this kind of issue and how it can be troubleshoot further.
I searched for deployment guide for F5 LTM - Juniper VPN Gateway integration. But I don't find any.