Manual Chapter :
Creating a bidirectional IPsec traffic selector for dynamic template
Applies To:
Show Versions
BIG-IP APM
- 17.5.0, 17.1.2, 17.1.1, 17.1.0
BIG-IP Link Controller
- 17.5.0, 17.1.2, 17.1.1, 17.1.0
BIG-IP LTM
- 17.5.0, 17.1.2, 17.1.1, 17.1.0
BIG-IP AFM
- 17.5.0, 17.1.2, 17.1.1, 17.1.0
BIG-IP ASM
- 17.5.0, 17.1.2, 17.1.1, 17.1.0
Creating a bidirectional IPsec traffic selector for dynamic template
The traffic selector you create filters traffic based on the IP addresses and port numbers that you specify, as well as the custom IPsec policy you assign.
- On the Main tab, click.
- ClickCreate.The New Traffic Selector screen opens.
- In theNamefield, type a unique name for the traffic selector.
- In theDescriptionfield, type a brief description of the traffic selector.
- For theOrdersetting, retain the default value (First).This setting specifies the order in which the traffic selector appears on the Traffic Selector List screen.
- From theConfigurationlist, selectAdvanced.
- For theSource IP Addresssetting, clickHostorNetwork, and in theAddressfield, type an IP address.This IP address should be the host or network address from which the application traffic originates.This table shows sample source IP addresses for Router in site B.System NameSource IP AddressRouter in site B4.4.4.0/24
- From theSource Portlist, select the source port for which you want to filter traffic, or retain the default value*All Ports.
- For theDestination IP Addresssetting, clickHost, and in theAddressfield, type an IP address.This IP address should be the final host or network address to which the application traffic is destined.This table shows sample destination IP addresses for any device in site A.System NameDestination IP AddressDevice in Site A192.0.2.13
- From theDestination Portlist, select the destination port for which you want to filter traffic, or retain the default value* All Ports.
- From theProtocollist, select the protocol for which you want to filter traffic.You can select* All Protocols,TCP,UDP,ICMP, orOther. If you selectOther, you must type a protocol name.
- From theDirectionlist, selectBoth.
- From theActionlist, selectProtect.TheIPsec Policy Namesetting appears.
- From theIPsec Policy Namelist, select the name of the custom IPsec policy that you created.
- ClickFinished.The screen refreshes and displays the new IPsec traffic selector in the list.