-
Question for initializing tcp session
Hi all, Loose initiation is One of the profiles options on F5 and it is useful for stateful services. The Loose initiation option allows the BIG-IP to initialize a connection when any TCP packet is received, rather than requiring a SYN packet for connection initiation. I'm looking for the option like Loose initiation in…
-
A10 for Transparent Proxy Authentication
Hi guys, I'm not sure whether I should post it under general or aflex subforum because I don't know if it will need aflex or not. The idea is I'd like to add authentication simultaneously with current transparent proxy system using WCCP and Squid. While Squid states in its FAQ that it can not use authentication with…
-
tcp-options
Hello, We're migrating our current LB from ACEs to A10. One particular Sfarm on ACE has the following option: parameter-map type connection TCP_IDLE_30 set timeout inactivity 1800 set tcp timeout half-closed 600 tcp-options selective-ack allow From Cisco: selective-ack - Allows the ACE to inform the sender about all…
-
health monitor snmp
Hello, I need information about health monitor SNMP because I need to pass that configuration of CISCO to A10. Cisco: probe snmp snmp_tomcat7djwfp port 161 interval 3 faildetect 5 passdetect interval 5 community monsti oid iso.3.6.1.4.1.2021.8.1.101.1 type absolute max 666667 threshold 3000 A10; health monitor…
-
CLI command to display cert info
I need to keep track of several devices and their cert expiration dates. Is there a cli command to show me all the device certs with their expiration dates?
-
log unknown
Hello, Today I have a problem with A10 Networks version 2.7.1-P1. when I saw the information about "#show log", I didn't understand the problem because I never had seen the following information: Sep 21 2015 09:18:31 Notice [LOGGING]:A10LOGD received partition creation event from daemon. Sep 21 2015 09:18:31 Notice…
-
External Health monitor - check SNMP info from servers
Hello, I´m having the following requierement: Need to get the snmp information of the servers I´m load balancing, and when the CPU and MEMORY pass over 90%, put this server on maintenance mode, so won´t receives new clients, but still maintains the connection for currents clients. Then, after the CPU and memory decreases…
-
Health Monitor - POST xml
Mark Cronin -- 9/11/2015 Please can you help - I am trying to create a health script that POSTs an XML request to a server and expects a 200 OK code back. Here is the XML reqest <?xml version="1.0" encoding="utf-8" ?><Request type="Heartbeat"><Field name="ChainCode">191</Field><Field name="PropertyCode">191</Field><Field…
-
how to ssl offload ftp
Hello, I was wondering is it possible with firmware 2.7.2-P4 on a Thunder to ssl offload ftp. I tried it with the ftp-proxy type where i can assign een client ssl but if i do a telnet to port 990 i still get a plaintext response. With regards, Richard
-
Backup ACOS 4 configuration using Api
Is there an example available that allows me to backup the system configuration of the A10 using ACOS 4 via aXapi?
-
ID1100 password recovery
My company just got in a used A10 Networks ID1100 and it is password protected. I tried the standard username of reset with the password being it's serial number within the first 15 seconds of the login prompt but it just kicks back "Login Incorrect" Do these units have a different password reset procedure? Any help would…
-
How do I figure out what platform I am running
I am looking at the cli. How do I figure out what platform I am running on? sh bootimage show me what version of software. How do I see what platform (vThunder, some specific model of hardware) I am running?
-
Radius Integration
Hello there, i was trying to integrate my radius server with A10 SoftAX 2.7.1-P2(build: 57)so i can do authentication in A10 for my web server, i tried basic http and form based both unfortunately not working, below is my config, did i miss something? or what could be the reason?
-
Export and Import CA-Signed Certificate for SSL-Offload with HA
We have a pair of AXs in HA for an SSL Web application, CA-Signed Certificate will be used on AX for SSL-offload. --------------------------------------------------------------------------------------------------- From ADC Config guide: After the CSR is generated, send the CSR to the CA. After you receive the signed…
-
Support cycle
Hello, I would like to have some information about the support cycle used by A10 : - Frequency between new minor version (ex: between 2.7.2-P2 and 2.7.2-P3) - Frequency between new major version (ex: between 2.7.2 and 2.7.3) - Time support for a major version (ex: how long is support 2.7.2) - Time support for an equipment…
-
Error interface ve
putting in the IP interface ve following message; IP Address already configured on an inteface I have the IP management: 10.1.8.10 / 24 IP which will be applied to the Ethernet interface 2: 10.1.8.100 / 24 could help me.
-
nat pool gateway usage to real servers
According the CLI reference the nat pool gateway option is used as follows: •For forward traffic (traffic from a client to a server), the NAT gateway is used if the source NAT address (the address from the pool) and the server address are not in the same IP subnet. But I see traffic to a (real) server out of the subnet of…
-
HA and aVCS coexistence
hello community i am very new to A10 and to this community. so please bear with me. we are currently in the process of preparing a poc with A10 ADCs and i have a question related to the setup and especially to HA and aVCS. due to specific requirements from the customer we will implement two AX1030 in a HA deployment. now…
-
1/10 GE Fiber (SFP+) Backward Compatibility
Hello, Is the 1/10 GE Fiber (SFP+) on the TH/AX series is backward compatibility with 1G SFP? Br, Faisal
-
Multiple Default Gateways
Hi all, is it possible to create different default gateways for different virtual interfaces? For example: I have three virtual interfaces, all in different subnets. Can I now assign each Interface its own gateway? Currently, I only see the option to use several static routes or a default route for all interfaces. Regards,…
-
promiscuous
What is promiscuous VIP and why we enable promiscuous when we use wildcard VIP 0.0.0.0
-
vcs floating-ip
Hi, I've successfully configured vcs & vrrp-a on my a-10 devices. I can access the VIP on port 22 (ssh) but not on port 80 or 443. I tried to disable and enable web-service without success. Devices are running version 2.7.2-P2 Is there something I should enable to access the VIP on port 80 and 443 ? Regards, Jean-Christophe
-
aXAPI Examples on GitHub
If you are looking for some aXAPI examples you can now also find them on GitHub. If you want to contribute just fork and pull! :)
-
setting up keys for periodic backup?
Somewhat confused on the periodic backup option as there seems no way to setup keys (or not preferred a static user/password) between the a10 and the remote server where I want to send the system backup. This means that while SCP is listed it's not possible as it will request a password rendering an automatic backup…
-
Error when creating partition
Hi Gurus, I've a strange error when creating a new partition: shlbpr01-Active-affinity-def-vMaster[1/1](config)#partition PROD network-partition Creation of partition 'PROD' failed: Can not open WAF policy file. Note that partation is still created. Any ideas what is missing ? Thanks & Best Regards, Jean-Christophe
-
Comments in Class List how to?
Can you put a comment in a class list like you can with an aFlex. We have a large number of IP Addresses and I would like the ability to comment who they are #Example 210.54.2.83 /32 203.41.229.134 /32 157.155.224.6 /32 157.155.224.7 /32 is it s # or a ; for comments? thanks in advance Bryce
-
CSR for Wildcard SSL Cert
Just submitted a tech support ticket for this. How would I generate a CSR to purchase a Wildcard SSL Cert? I've used SANS certs before and it is no different than purchasing any other cert, you just define the SANs on checkout at the CA. I think a wildcard might be different. Has anyone here used a Wilcard SSL Cert on the…
-
Use Nagios to Monitor VThunder
Does anyone know how I can use nagios to monitor the vthunder server? can I just treat it like a normal linux box.
-
BGP peering between 1030S and Juniper problem ?
Is their a known issue setting up BGP peering between (ACOS) version 2.7.1-P1 and juniper. On our 1030S i couldn't set up eigrp connection between us and a pair of juniper routers from our serviceprovider. We kept getting this in sh ip bgp neighbors. Connections established 0; dropped 0 Capability error: unknown capability…
-
Snat on vip clarification
Will I get the same result if I configure snat-on-vip, not configuring any snat or configuring snat with a snat pool that have the vip ip address only? what is the difference between configuring: 1- slb snat-on-vip 2- NOT configuring any snat 3- slb snat source nat-pool with pool that include a single ip address which is…