We need to disable the nat being done by the loadbalancer. here is the scenario
1. presently the access to the virtual ip from internet goes to backend server via LB
2. The logs on the web server show the source ip as the virtual ip of the web-site.
3. we need the actual ip of the client and not the VIP ip as the source to be logged on the web server
4. Now if i remove the group configuration that NAT to the backend servers will stop. but what happens to the return traffic from the servers to the clients ... the gateway for the backend servers is LB (CSS)itself.. but i am concerned about the return traffic. do i need to add specific SNAT to the VIP address for the return traffic from the backend servers (if yes what is the command-set we use)?
please help me in understanding how NAT/group concept works in CSS.
all you need is guarantee that the traffic from backend server goes back to CSS.
So, if the gateway is set on the server to point at the CSS, you're good.
No need to worry about anything else.