I am setting up a network with a CentOS client, a CentOS server and a BIG-IP.
The network looks like this:
(client) < -- > (BIG-IP) < -- > (server)
The client is on a 10.10.20.x network.
The server is on a 10.10.10.x network.
The BIG-IP is on a 10.10.10x AND 10.10.20x network.
- The client should be ONLY able to talk to the BIG-IP.
- The server should be ONLY able to talk to the BIG-IP.
- The BIG-IP should be able to talk to both (all traffic must go through the BIG-IP).
-
- Client can ping BIG-IP, and BIG-IP can ping client so that all works.
- Server can also ping BIG-IP, but BIG-IP can't ping the server back!
BIG-IP doesn't even know that the server exists.
For simplicity's sake, I am using the Linux distro that BIG-IP is built on, for testing and not using BIG-IP functionality yet. Just pretend the BIG-IP is another Linux server.
Any ideas?
tl;dr server A can ping server B, but server B can't ping server A.