Applies To:Show Versions
- 11.5.9, 11.5.8, 11.5.7, 11.5.6, 11.5.5, 11.5.4, 11.5.3, 11.5.2, 11.5.1
Overview: How do I deploy BIG-IP GTM on a network with multiple route domains?
You can deploy BIG-IP Global Traffic Manager (GTM) on a network where BIG-IP Local Traffic Manager (LTM) systems are configured with multiple route domains and overlapping IP addresses.
The following figure shows BIG-IP GTM deployed in a network with multiple BIG-IP Local Traffic Manager (LTM) systems configured with the default route domain (zero), and two additional route domains. BIG-IP GTM can monitor the Application1 and Application2 servers that have overlapping IP addresses and reside in different route domains. The firewalls perform the required address translation between the BIG-IP GTM and BIG-IP LTM addresses; you must configure the firewalls to segment traffic and avoid improperly routing packets between route domain 1 and route domain 2.
Before BIG-IP GTM can gather status and statistics for the virtual servers hosted on BIG-IP LTM systems on your network that are configured with route domains, you must configure the following on each BIG-IP LTM that handles traffic for route domains:
- VLANs through which traffic for your route domains passes
- Route domains that represent each network segment
- Self IP addresses that represent the address spaces of the route domains
Additionally, on BIG-IP GTM you must:
- Configure, for each route domain, a server object with virtual server discovery disabled
- Disable virtual server discovery globally
Perform the following tasks to configure BIG-IP GTM to monitor BIG-IP LTM systems with route domains.
Creating VLANs for a route domain on BIG-IP LTM
- On the Main tab, click The VLAN List screen opens. .
- Click Create. The New VLAN screen opens.
- In the Name field, type external.
- In the Tag field, type a numeric tag, from 1-4094, for the VLAN, or leave the field blank if you want the BIG-IP system to automatically assign a VLAN tag. The VLAN tag identifies the traffic from hosts in the associated VLAN.
- For the Interfaces setting, from the Available list, click an interface number or trunk name and add the selected interface or trunk to the Untagged list. Repeat this step as necessary.
- If you want the system to verify that the return route to an initial packet is the same VLAN from which the packet originated, select the Source Check check box.
- Click Finished. The screen refreshes, and displays the new VLAN from the list.
Creating a route domain on BIG-IP LTM
- On the Main tab, click The Route Domain List screen opens. .
- Click Create. The New Route Domain screen opens.
- In the ID field, type an ID number for the route domain. This ID must be unique on the BIG-IP system; that is, no other route domain on the system can have this ID.
- In the Description field, type a description of the route domain. For example: This route domain applies to traffic for application MyApp.
- For the Strict Isolation setting, select the Enabled check box to restrict traffic in this route domain from crossing into another route domain.
- For the Parent Name setting, retain the default value.
- For the VLANs setting, move the external and internal VLANs from the Available list, to the Members list. Configuring this setting ensures that the BIG-IP system immediately associates any self IP addresses pertaining to the selected VLANs with this route domain.
- Click Finished. The system displays a list of route domains on the BIG-IP system.
Creating a self IP address for a route domain on BIG-IP LTM
- On the Main tab, click The Self IPs screen opens. .
- Click Create. The New Self IP screen opens.
- In the Name field, type a unique name for the self IP.
- In the IP Address field, type an IP address. This IP address must represent a self IP address in a route domain. Use the format x.x.x.x%n, where n is the route domain ID, for example, 10.1.1.1%1. The system accepts IPv4 and IPv6 addresses.
- In the Netmask field, type the network mask for the specified IP address.
- From the VLAN/Tunnel list, select the VLAN that you assigned to the route domain that contains this self IP address.
- From the Port Lockdown list, select Allow Default.
- Click Finished. The screen refreshes, and displays the new self IP address.
Disabling auto-discovery at the global-level on BIG-IP GTM
- On the Main tab, click The general Configuration screen opens. .
- Clear the Auto-Discover check box.
- Click Update.
Defining a server for a route domain on BIG-IP GTM
- On the Main tab, click The Server List screen opens. .
- Click Create. The New Server screen opens.
In the Name field, type a name for the server.
Important: Server names are limited to 63 characters.
- From the Product list, select either BIG-IP System (Single) or BIG-IP System (Redundant). The server type determines the metrics that the system can collect from the server.
In the Address List area, add the self IP address that you assigned to the VLAN
that you assigned to the route domain.
Important: Do not include the route domain ID in this IP address. Use the format x.x.x.x, for example, 10.10.10.1.
- From the Data Center list, select the data center where the server resides.
From the Prober Pool list, select one of the
Option Description Inherit from Data Center By default, a server inherits the Prober pool assigned to the data center in which the server resides. Prober pool name Select the Prober pool that contains the BIG-IP systems that you want to perform monitor probes of this server.Note: The selected Prober pool must reside in the same route domain as the servers you want the pool members to probe.
- In the Health Monitors area, assign the bigip monitor to the server by moving it from the Available list to the Selected list.
- From the Virtual Server Discovery list, select Disabled.
- Click Create. The New Server screen opens.