Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hello,I have a situation where the usable WAN IP block belongs to the DMZ interface of the ASA. A WAN/ISP transit network also exists between the ASA and ISP provider but we cannot use these addresses for SSL VPN.Is it possible to route through the W...
We have a CSS that appears to be rewriting the client source IP for HTTP requests with its own IP. This is an issue as we're unable to log the real IPs of the clients requesting HTTP data.The config is attached.Any assistance would be appreciated.
There are multiple VIPs, 192.168.0.252 (HTTP/HTTPS) and 192.168.0.248 (FTP/SFTP) that work.A new VIP, 192.168.0.250 does not properly work for HTTP/HTTPS. Behind this VIP there are two servers: 192.168.0.25 and 192.168.0.27. In the load balancer GUI,...
Thanks Syed.Do you have an example of how this would look in our situation? I'm having trouble locating Cisco documentation on this.Much appreciated,Mark
Seeing as the issue is with the group commands, is there any way to achieve local VIP access without the use of groups (different subnet?), or if not to export the real source IPs in the form of an X-Forwarded-For or other HTTP variable?