-
Functionally up
what does " Functionally up " mean for servers
-
Staging code on local device for upgrade
Good morning! We have several ADC devices that are scheduled for a code upgrade, some in far remote locations that are only accessible through trans-Atlantic WAN links. Is there a way to copy the code image file to the local device and install it from the device itself rather than specifying a remote location from which…
-
Transparent Device
Hey Guys, I need some help because I have some problem on ADC configuration, I have an external issl appliance perform the encryption and decryption(transparent), and im using a10 to forward the traffic to DLP through ICAP. When we configure tcp in SLB we can see the traffic passthrough a10, but when we configure HTTP we…
-
Console CLI is unavailable
We have several A10 Thunder 4440s that are unavailable via the console CLI. Upon connect, no login prompt appears and it appears to be in a sort of hung state. SSH connections work normally as expected. Is there a means of resetting the console CLI session so that login via console is available without rebooting the device?
-
IP NAT POOL Port Usage
It seems that the NAT POOL Port capacity of each ADC module is different? Who has the relevant calculation method? I want to design a sufficient POOL for my environment and have provided it for use.
-
ACOS non-FTA Code Upgrade from 2.7.2 to 4.1.4
If anyone has successfully perform an upgrade from 2.7.2 to 4.1.4 on ACOS non-FTA Code on two TH3030s with VCS and VRRP setup, it will be greatly appreciated if you can share some tips and recommendations. I've read some A10 documents about it but I'd like to hear if from those who actually perform the upgrade. Thank you…
-
REST API and updating slb client-ssl server-name-list
I'm trying to automate uploading new SSL certs using the REST API. I can update the certificate-list okay, but now I'm working on SNI templates using server-name-list, and I can't get the request correct. I get: 'Failed to handle json field "server-name-list". JSON field should not be array type.'.
-
How to add interfaces to an existing trunk-group in aVCS environment with ADP.
Hello everyone. I hope you are great. We have this problem: We have a cluster of two A10 Thunder 930 with aVCS and 8 L3V partitions. Both Thunder 930s have two Ethernet interfaces in a trunk group with LACP. All partitions (including the "shared" partition) use this trunk group. We need to add ethernet interfaces to the…
-
An issue of Link Load Balacing with ipv6
When I update the BW-List with IPv6,something wrong with that,following is the output: "BW-List was updated, but failed to parse file. There are 10 parse errors in line 1, 1, 2, 2, 3, 3, 4, 4, 5, 5 in Black-White List chinaalli_pv6."
-
A10 + Horizon + Azure MFA
Anyone know if there is a setting on the A10 Load Balancer that I can enable/disable that would cause my Azure MFA to connect to my Horizon Desktop the first time but every other time after that it hangs unless I clear my browsing data? If I bypass the LB it works every time. Microsoft said that it may be adding some extra…
-
New Partitions
Hi All, Total newbie here, please forgive dumb questions. We are running a Thunder 3030, and I'd like to add partitions to the 4 partitions we already have. Do I need to create a VLAN for each new partition and/or create a new subnet for each
-
Conversion from NetScaler to Acos (A10 system)
Hi community. Im a new member of this group. Im learning about the products ADC and CFW, so currently we have a project with the customer Telefonica Chile and we need know how we can homologate/convert configs from NetScaler (Citrix) to Acos software (A10) please. Thanks for your future comments.
-
A issue about session persistence
Clients access the VIP by SSL VPN,all the client's ip was NAT to sslvpn ip-10.182.21.141,so the A10 load balalncing the request to single real server and port,the A10 use source ip persistence method. At the end,all other real server has no http request,all requst go to the same one real server-10.182.43.171:9002. so how…
-
Load Balancing IPSEC VPN UDP-500 & UDP-4500
Hi, I'm trying to load balance multiple client IPSEC VPN connections to 2 servers, this is part of a Microsoft Always-On VPN solution We have it working when I have just one server configured, but I think I need to manage the traffic so that the SRC hosts UDP-4500 traffic follows the same SRC hosts UDP-500 traffic so they…
-
Health check did not work in GSLB
I have three ISP line,ISP1,ISP2 and ISP3. We check the ISP's health status with ICMP protocol,when ISP1 down,how to know the status?When ISP1 down,If the health check monitor go out through ISP2 or ISP3?So A10 can't know the ISP1 down.The health check monitor did not work.
-
Upgrade OS standard steps
What is the best practise steps for upgrade OS?😀
-
Radius LB DSR Mode
Hi Experts, Do you have a technical reference for load balancing Radius Server in DSR mode? The traffic flow will be something like this(see attached image). I am not really sure if this is the right behavior so I am asking if you can share some good references with regards to this deployment. Thank you.
-
Health Monitor and Expect Text
Good afternoon everyone, I am attempting to perform a health check on an application server that returns a long nested string. This is more than a 200 or even a Success! on a health monitor page but something more along the lines of the below.…
-
A10 Box #1
Is there anyone in the community that would be interested in acquiring the first box sold in North America. I have emails with A10 management that can prove this as I can also share the genealogy and information of how the sale went down, who was involved and other facts. The box was removed from service in working order…
-
Question for LB-method [Round Robin Strict]
Hi all, Does any one know how to work with Round Robin Strict method and when would it be useful to use this?
-
http response status stats
Hi, On ADC with ACOS 4.1.1 by default http response stats sampling works on real servers ports, but not on VIP. After upgrade to 4.1.4 situation was reversed - http response stats sampling works on VIPs, but not on real servers ports. Configuring on server port "sampling-enable all" (or specific field) do nothing. slb…
-
Terraform Provider
I've been messing around with Terraform and seeing what it can do. I've built just a basic config file to create a server with a few settings. All runs great. Then I start to "manually" change settings on the newly formed server in the ADC. I change the weight to '10' from the values of '1' that my config gave it. I re-run…
-
Migrate ADC
Hi everyone, I need your recommendation , what is the best way to migrate all my configuration of 1040 appliances to 3350. I tried use backup and restore, but some objects don't work properly and snmp trap don't Send nothing. Best regards
-
WAF Deployment
Hi, Is there any deployment guide to install a basic WAF configuration ? Or some configuration exemple with some explanations. Regards
-
File upload using aXAPI 3.0
As documented at https://documentation.a10networks.com/ACOS/411x/411-P1/ACOS_4_1_1-P1/html/axapiv3/file.html I'm trying to upload text/plain files to use as axflex scripts or bw-lists. So far I haven't been able to POST files with any success. Each API call pushes the control CPU to 100% until the device has been rebooted.…
-
Active Directory ADC
Hi, Does A10 ADC support for active directory load balancing via layer 7 protocol? Is there any use-case for active directory slb from A10 networks guide? Appreciate it in advance. Regards, Shawn
-
error after upgrade ADC to ACOS 5.2.0
After of upgrade from 4.1.1P13 to 5.2.0 firmware version, i have the follow errors and the device seems to reload ( conmute to slave node ), with previous version don't have issues Oct 06 2020 16:10:11 Error [Fail Safe]:Failed in thread LWP 12227 Oct 06 2020 16:10:11 Error [Fail Safe]:Failed in thread LWP 12609 Oct 06 2020…
-
Disable RC4 in A10
How can we disable rc4 in A10? There is no option of RC4 in cipher template. Can I do something like this? DEFAULT:!RC4:!SSLv3:!SSLv2:!TLSv1 If yes, where to add this? Thanks in advance!
-
ADC health monitor and SSL cipher
Trying to config health monitor to use tls1.1/tls 1.2 level ssl ciphers. I've tried something like DEFAULT:!SSLv3:!SSLv2:!TLSv1, or even just TLS1_ECDHE_ECDSA_AES_128_GCM_SHA256:TLS1_ECDHE_RSA_AES_128_GCM_SHA256 in the cli for ssl-cipher. I'm debugging this with openssl s_server(so that health-monitor talks to this debug…
-
How to do a graceful shutdown on a per virtual server basis?
I only see graceful shutdown settings at ADC -- SLB -- Global Where is the settings to do this at a virtual server level? On some of our websites we need graceful shutdowns to let the sessions flush out, but on others we do not. I don't see a way to accomplish that on the A10.