Forum Discussion

IRONMAN's avatar
IRONMAN
Icon for Cirrostratus rankCirrostratus
Jun 22, 2020

AFM rule match with actual internal IP or SNAT IP of virtual server?

Any one suggest me? F5 at gateway connected to internet and acting as a firewall.

 

Virtual server : IP forward

 

Destination IP: 8.8.8.x

Source IP: 192.168.x.x

SNAT IP: 4.4.4.x

 

I need to build the AFM rules for this and apply to global context.

what is order of here, Flow will check the AFM rule or listener first?

 

 

 

 

3 Replies

  • NAG's avatar
    NAG
    Icon for Cirrostratus rankCirrostratus

     

     

    Hi

     

    Its the Global Context AFM rules first.

    Hope this Helps.

     

    Let me know if you have any questions.

     

    Nag

     

    • IRONMAN's avatar
      IRONMAN
      Icon for Cirrostratus rankCirrostratus

      Hi Nag, if i don,t have matching Listener virtual server for same flow with Global context rule allowed for same flow, what would be call?

  • Thanks Nag,

     

    I have two questions,

     

    1, I have Virtual server : IP forward , is it act as listener or Virtual server? in Diagram i can see it is has to match listener?

     

    2, In case I have Standard virtual server, How this flow? is it same like, it is check the rule first and go for virtual?