<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ACE ONE One Arm Mode in Application Networking</title>
    <link>https://community.cisco.com/t5/application-networking/ace-one-one-arm-mode/m-p/1903713#M36892</link>
    <description>&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;Hi, I need that one server can communicate with the VIP of other servers that are in the same subnet. I know that the solution is trough NAT, but at the moment I don’t have success.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;Can anyone help me? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;&lt;IMG src="https://community.cisco.com/legacyfs/online/legacy/7/8/9/80987-Desenho3.gif" alt="Desenho3.gif" class="jive-image-thumbnail jive-image" onclick="" width="450" /&gt;&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;rserver host REAL1&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;ip address 172.16.20.100&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;inservice&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;rserver host REAL2&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;ip address 172.16.20.101&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;inservice&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;rserver host FW_SEC_1&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;ip address 172.16.20.102&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;inservice&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;rserver host FW_SEC_2&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;ip address 172.16.20.103&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;inservice&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;serverfarm SEC_20_SF&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;rserver REAL1&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;&amp;nbsp;&amp;nbsp; inservice&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;rserver REAL2&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;&amp;nbsp;&amp;nbsp; inservice&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;serverfarm SEC_SF&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;rserver FW_SEC_1&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;&amp;nbsp;&amp;nbsp; inservice&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;rserver FW_SEC_2&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;&amp;nbsp;&amp;nbsp; inservice&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;class-map match-any SEC_20_VS&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;10 match virtual-address 172.16.10.18 eq https&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;class-map match-any FW_SEC_VIP&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;10 match virtual-address 172.16.10.19 eq http&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;class-map match-any C-NAT&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;10 match &lt;CODE&gt;source-address 172.16.20.0 255.255.255.0&lt;/CODE&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;policy-map multi-match POL_SEC_20&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;class SEC_20_VS&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;&amp;nbsp;&amp;nbsp; loadbalance vip inservice&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;&amp;nbsp;&amp;nbsp; loadbalance policy …&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;policy-map multi-match POL_SEC_FW&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;class FW_SEC_VIP&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;&amp;nbsp;&amp;nbsp; loadbalance vip inservice&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;&amp;nbsp;&amp;nbsp; loadbalance policy …&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;policy.map multi-match POL-NAT&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;class C-NAT&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;CODE&gt;nat dynamic 1 vlan 20&lt;/CODE&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;interface vlan 10&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;ip address 172.16.10.5 255.255.255.0&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;alias …&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;service-policy input POL_SEC_20&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;service-policy input POL_SEC_FW&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;no shutdown&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;interface vlan 20&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;ip address 172.16.20.5 255.255.255.0&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;alias …&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;service-policy input POL-NAT&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;&lt;CODE&gt;nat-pool 1 172.16.10.200 172.16.10.210 netmask 255.255.255.0 pat&lt;/CODE&gt;&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;no shutdown&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;thank you&lt;/P&gt;</description>
    <pubDate>Tue, 06 Mar 2012 22:01:41 GMT</pubDate>
    <dc:creator>DPlagueHT</dc:creator>
    <dc:date>2012-03-06T22:01:41Z</dc:date>
    <item>
      <title>ACE ONE One Arm Mode</title>
      <link>https://community.cisco.com/t5/application-networking/ace-one-one-arm-mode/m-p/1903713#M36892</link>
      <description>&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;Hi, I need that one server can communicate with the VIP of other servers that are in the same subnet. I know that the solution is trough NAT, but at the moment I don’t have success.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;Can anyone help me? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;&lt;IMG src="https://community.cisco.com/legacyfs/online/legacy/7/8/9/80987-Desenho3.gif" alt="Desenho3.gif" class="jive-image-thumbnail jive-image" onclick="" width="450" /&gt;&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;rserver host REAL1&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;ip address 172.16.20.100&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;inservice&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;rserver host REAL2&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;ip address 172.16.20.101&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;inservice&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;rserver host FW_SEC_1&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;ip address 172.16.20.102&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;inservice&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;rserver host FW_SEC_2&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;ip address 172.16.20.103&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;inservice&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;serverfarm SEC_20_SF&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;rserver REAL1&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;&amp;nbsp;&amp;nbsp; inservice&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;rserver REAL2&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;&amp;nbsp;&amp;nbsp; inservice&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;serverfarm SEC_SF&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;rserver FW_SEC_1&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;&amp;nbsp;&amp;nbsp; inservice&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;rserver FW_SEC_2&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;&amp;nbsp;&amp;nbsp; inservice&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;class-map match-any SEC_20_VS&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;10 match virtual-address 172.16.10.18 eq https&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;class-map match-any FW_SEC_VIP&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;10 match virtual-address 172.16.10.19 eq http&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;class-map match-any C-NAT&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;10 match &lt;CODE&gt;source-address 172.16.20.0 255.255.255.0&lt;/CODE&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;policy-map multi-match POL_SEC_20&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;class SEC_20_VS&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;&amp;nbsp;&amp;nbsp; loadbalance vip inservice&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;&amp;nbsp;&amp;nbsp; loadbalance policy …&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;policy-map multi-match POL_SEC_FW&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;class FW_SEC_VIP&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;&amp;nbsp;&amp;nbsp; loadbalance vip inservice&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;&amp;nbsp;&amp;nbsp; loadbalance policy …&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;policy.map multi-match POL-NAT&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;class C-NAT&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;CODE&gt;nat dynamic 1 vlan 20&lt;/CODE&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;interface vlan 10&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;ip address 172.16.10.5 255.255.255.0&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;alias …&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;service-policy input POL_SEC_20&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;service-policy input POL_SEC_FW&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;no shutdown&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;interface vlan 20&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;ip address 172.16.20.5 255.255.255.0&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;alias …&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;service-policy input POL-NAT&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;&lt;CODE&gt;nat-pool 1 172.16.10.200 172.16.10.210 netmask 255.255.255.0 pat&lt;/CODE&gt;&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;no shutdown&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;thank you&lt;/P&gt;</description>
      <pubDate>Tue, 06 Mar 2012 22:01:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/ace-one-one-arm-mode/m-p/1903713#M36892</guid>
      <dc:creator>DPlagueHT</dc:creator>
      <dc:date>2012-03-06T22:01:41Z</dc:date>
    </item>
    <item>
      <title>Re: ACE ONE One Arm Mode</title>
      <link>https://community.cisco.com/t5/application-networking/ace-one-one-arm-mode/m-p/1903714#M36893</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Green,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You need to add the "POL_SEC_20 and POL_SEC_FW" policies also under the interface VLAN 20. Please note you don't need to remove them from the vlan 10 you just need to add them under vlan 20 as well in order to ARP for the VIP addresses through that SVI.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;interface vlan 20&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;ip address 172.16.20.5 255.255.255.0&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;alias …&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;service-policy input POL-NAT&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;service-policy input POL_SEC_20&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;service-policy input POL_SEC_FW&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;&lt;CODE&gt;nat-pool 1 172.16.10.200 172.16.10.210 netmask 255.255.255.0 pat&lt;/CODE&gt;&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;no shutdown&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;HTH&lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;__ __ &lt;/P&gt;&lt;P style="line-height: normal; margin-bottom: 0pt;"&gt;Pablo &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 06 Mar 2012 22:40:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/ace-one-one-arm-mode/m-p/1903714#M36893</guid>
      <dc:creator>pablo.nxh</dc:creator>
      <dc:date>2012-03-06T22:40:31Z</dc:date>
    </item>
    <item>
      <title>ACE ONE One Arm Mode</title>
      <link>https://community.cisco.com/t5/application-networking/ace-one-one-arm-mode/m-p/1903715#M36894</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Pablo, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Perfect, it’s all functioning.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for the help.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 07 Mar 2012 10:10:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/ace-one-one-arm-mode/m-p/1903715#M36894</guid>
      <dc:creator>DPlagueHT</dc:creator>
      <dc:date>2012-03-07T10:10:35Z</dc:date>
    </item>
  </channel>
</rss>

