cancel
Showing results for 
Search instead for 
Did you mean: 

Using virtual port in internal interface for Web re-write

rdrombos_
Occasional Contributor

Using virtual port in internal interface for Web re-write

By default, web re-write users will have sessions through the IVE that have a source IP address that is IP address of the the internal port interface of the IVE. I want to have an additional Web re-write role that will have a different IP address, but within the same subnet as the internal port address.

I defined a Virtual Port on the Internal port that is an IP address within the same subnet as the real address of the Internal Port. I then created a new web re-write role and used this virtual address in the VLAN/Source IP setting. When I test, users of this role still show up with the interface's real source IP address, not the virtual port address. Has anyone done this? Is there a better way to configure Web re-write roles with alternative IP addresses?

Thank you.

1 REPLY 1
zanyterp_
Respected Contributor

Re: Using virtual port in internal interface for Web re-write

Do users map only to the sourceIP role first (or at least prior to the non-source IP role)?

I know you have it configured at Users>User Roles>roleName>General>VLAN/Source IP; but have you enabled it on the general page? There is an option there (with UI and Session options) that enables the VLAN/Source IP settings to take effect; if this is not enabled, the configuration you have done will not occur (or if the other role is mapped first).