Sito79
Jan 15, 2009Nimbostratus
VNP Configuration Behind Link Controller
Hi,
Just wondering , has anyone done a VPN termination which terminates on a firewall behind an F5 link Controller. I think that my configuration is Ok but the IKE tunnel is always in MM_WAIT_MSG2 state.
I try this configuration:
For VPN incoming traffic:
I have created a VS with port 0 and asocciate with the firewall_internal_pool selecting performance L4 and I have selected all protocols: VS_ENTRADA
I have created a VS with port 500 and asocciate with the firewall_internal_pool select performance L4 and I have selected all protocol: VS_ENTRADA_500
for VPN outgoing traffic
I have created a vpn_gateway_pool with the internal IP of the router.
I have created a VS_SALIDA_500 port 500 and I have associated with the vpn_gateway_pool selecting permance L4 and all protocols.
And finally I have created a snat_pool with VPN public IP addresses as snat pool members aplied to the VS_SALIDA_500.