cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
372
Views
0
Helpful
2
Replies

css11500 with Oracle AFC instalation

carlos.grisales
Level 1
Level 1

hi guys, i need help, in the installation of Oracle AFC, the server need to test de VIP address and the services but the server do in the inside interface the VIP address response the ping but he cant reach another protocol to himself, but whit the VIP Address, i dont know what to do.

2 Replies 2

Gilles Dufour
Cisco Employee
Cisco Employee

if I understand correctly, you need a server on the inside to open a connection with the VIP.

This is possible only if you configure the CSS to client-nat the traffic that will be forwarded to the service.

Like this, the server open the connection will appear as another client.

To do the client nat, you need to create a group with a vip representing the client nat address.

You activate the group with just a vip.

Then you create an acl to apply the group to the traffic that needs to be natted.

acl 1

clause 10 permit any destination content sourcegroup

clause 99 permit any any destination any

apply all

Regards,

Gilles.

g-oliveira
Level 1
Level 1

.