04-16-2004 04:44 AM
Can someone explain to me the way that 'add service' and 'add destination service' commands work when groups are configured. The config guide wasn't too clear on this point assuming a wider knowledge of this subject I think. We have 3 content rules configured and 6 services. No ACLs. 3 groups configured to handle NAT from the content rules to the services using the content rule VIP address as the address for the group. We are using 'add destination service' command to point at groups of back-end servers.
Any light shed on this subject would be most appreciated.
Thanks.
Steve.
04-16-2004 05:25 AM
Steve,
The add service command is used when you want to NAT the source ip when the servers initiate connection to the outside of CSS.
The add destination command is usually used in a one armed config ( For eg . When the CSS and the servers are hanging from the same CAT switch). It NATS the source ip of the client and makes sure that the servers reply back to the CSS.
Let me know if this helps.
Sagar
04-16-2004 08:08 AM
Hi Sagar,
That would make sense as the CSS and servers are hanging off the same 6500 Cats.
Thanks, that has clarified things for me.
Steve.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide