I have an ACE loadbalancing to a pool of ftps servers. I configured the ACE to ip source stickiness (to ensure data and control channel consistency) and VIP without any port information. However I can't get it to work... The control channel is established but the data channel isn't.
Am I forgeting something? Does anyone have a sample configuration to share?
In your case SFTP client will open control channel to VIP 10.11.71.185. ACE changes the address to 10.11.66.11 (real server). The real server sends PASV asking client to use ip:10.11.66.11, port:xyz. Unlike FTP this packet is encrypted. Since ACe cannot see this info, it cannot change the 10.11.66.11 to 10.11.71.185 (Vip)in the server response to client.
VMware Trunk Port Group is supported from ACI version 2.1
VMM integration must be configured properly
ASA device package must be uploaded to APIC
ASAv version must be compatible with ACI and device package version
In the Previous articles of ACI Automation, we are using Postman/Newman as the Rest API tool to automate the ACI Configuration.
In this article I’m going to discuss on usin...
One of the first steps in building your ACI Fabric is to go through Fabric Discovery. While Fabric Discovery is usually a straightforward process, there are various issues that may prevent you from discovering an ACI switch. This article wil...