Cisco ACE compatiblity with F5 GTM

Hi,
We have cisco ace 30 modules installed in cisco 6500 switches. For application availability purpose from the internet, we need to have some global site selector/3rd party devices with similar feature set that of cisco gss.
My question is: whether cisco ace is compatible to ge tintegrated with other 3rd party devices like F5 GTM?
kindly sugegst..

Good afternoon,
I'm not familiar with the GTM solution, but, as long as it's DNS-based like the GSS, it should be perfectly compatible. Bear in mind that the ACE is not aware on how clients are getting the IP address, it just replies to whatever connections it gets.
Regards
Daniel

Similar Messages

  • Monitoring the Cisco ACE module with SNMP

    We use 2 redundant Cisco ACE loadbalancer in our datacenter
    The models are ACE20-MOD-K9 with software A2(2.0)
    Does anybod know how to monitor the environment (cpu, memory) of such a module with snmp?
    We were not able to find an applicable MIB for that module.
    The CISCO-PROCESS-MIB.oid (ftp://ftp.cisco.com/pub/mibs/oid/CISCO-PROCESS-MIB.oid) seems not to reflect the correct oid's.
    What are the correct oid's for cpu and memory?
    Where can I find a detailed documentation for snmp-monitoring the cisco ace module?
    thanks

    Hi Patrik,
    to monitor the ACE I use these two MIB's:
    ftp://ftp.cisco.com/pub/mibs/v2/CISCO-SLB-MIB.my
    ftp://ftp.cisco.com/pub/mibs/v2/CISCO-ENHANCED-SLB-MIB.my
    Example for CPU:
    /* Style Definitions */
    table.MsoNormalTable
    {mso-style-name:"Normale Tabelle";
    mso-tstyle-rowband-size:0;
    mso-tstyle-colband-size:0;
    mso-style-noshow:yes;
    mso-style-priority:99;
    mso-style-qformat:yes;
    mso-style-parent:"";
    mso-padding-alt:0cm 5.4pt 0cm 5.4pt;
    mso-para-margin:0cm;
    mso-para-margin-bottom:.0001pt;
    mso-pagination:widow-orphan;
    font-size:11.0pt;
    font-family:"Calibri","sans-serif";
    mso-ascii-font-family:Calibri;
    mso-ascii-theme-font:minor-latin;
    mso-fareast-font-family:"Times New Roman";
    mso-fareast-theme-font:minor-fareast;
    mso-hansi-font-family:Calibri;
    mso-hansi-theme-font:minor-latin;
    mso-bidi-font-family:"Times New Roman";
    mso-bidi-theme-font:minor-bidi;}
    cpmCPUTotalEntry 1.3.6.1.4.1.9.9.109.1.1.1.1
    The resource usage and other interesting things you will find with a MIB browser.
    Achim

  • Cisco ACE Module with Bluecoat Cache Proxy, Transparent and spoofing client IP

    Hello Dears,
    I'm trying to implement Cache loadbalancing through Cisco ACE Module.
    I have 2 Bluecoat cache proxies, when i do configure transparent proxy without spoofing client IP, everything work properly, but when I enable spoofing client IP (reflect client IP address), clients are not able to access internet, although they are going to cache servers, I can see their sessions.
    I'm afraid that I have a problem in the returned traffic PBR.
    can anyone help please.
    Thanks

    Hi Ibrahim
    I ahve reviewed the config. The ACE config is all god but I do see some issue with the switch side. If you are doing ip spoofing, then "match ip address" in pbr should be the client ip address. However, what you did is ip address between the ACE and MSFC. Try to configure the test client ip address into the below access-list.
    msfc---vlan 265---ACE--vlan 264----CE farm
    interface vlan 265
      description Interface_With_MSFC_SUBS_2_INTERNET
      ip address 168.168.1.52 255.255.255.248
      access-group input PERMIT_ALL
      service-policy input L3L4_PM
      no shutdown
    ip route 0.0.0.0 0.0.0.0 168.168.1.50
    ip access-list extended HSDPA_2_CACHE
    permit tcp 168.168.0.0 0.0.255.255 any eq www   <<<-- wrong
    ip access-list extended Internet_2_CACHE
    permit tcp any eq www 168.168.0.0 0.0.255.255   <<<---wrong
    interface Vlan 265
    description Interface_With_ACE
    ip address 168.168.1.50 255.255.255.248
    route-map INTERNET_2_HSDPA permit 10
    description "PBR for Response HTTP Traffic"
    match ip address Internet_2_CACHE
    set ip next-hop 168.168.1.52
    route-map HSDPA_2_INTERNET permit 10
    match ip address HSDPA_2_CACHE
    set ip next-hop 168.168.1.52
    regards
    Andrew

  • CISCO ACE issue with MIBs

    Dear All,
      I know this might have discussed here million times.. but still i am behind this to get this done due to BU pressure to do the capacity management.
    I am trying to get the following using SNMP
    1) Real Server
    2) Real Server Current Connection
    3)  Real Server IP address
    I tried it with following MIBs and OIDs
    CISCO-SLB-MIB
    slbRealServerFarmName               .1.3.6.1.4.1.9.9.161.1.3.1.1.1
    slbRealIpAddress                          .1.3.6.1.4.1.9.9.161.1.3.1.1.2
    slbRealNumberOfConnections         .1.3.6.1.4.1.9.9.161.1.3.1.1.5
    CISCO-ENHANCED-SLB-MIB
    cesRserverName                         .1.3.6.1.4.1.9.9.470.1.1.1.1.1
    cesRserverIpAddress                    .1.3.6.1.4.1.9.9.470.1.1.1.1.4
    cesRserverCurrConns                   .1.3.6.1.4.1.9.9.470.1.1.1.1.19
    Either of these MIBs /OIDs return any value.
    When i raise a TAC case i got the information saying these cannot be retrieved.
    Is there any way i can get these values from ACE MODULE , because this is very much required for the BU and they are behind us since long time.
    Apppreciate support from all.
    thanks,
    Parvees

    Hi Parvees,
    I wasn't looking for values you're interested in, but everything you can get with show command you can get via HTTP(s) request in XML using .
    For example, here's a "sh serverfarm ServerFarm1" query:
    $  curl --user USER:PASSWD -d "xml_cmd=CONTEXT\">xml-show on%0A show serverfarm ServerFarm1" http://ACE_IP_ADDRESS/bin/xml_agent
    I'm running curl on linux box, but I think it is available on other platforms. The code above is a one-line command, but you can write scripts/lists of commands and send them to your ACE with curl.
    Here's a link provided in a neighbour discussion that gives more information: https://supportforums.cisco.com/docs/DOC-17849
    Hope this help,
    Alex

  • Is Samsung Galaxy Ace compatible with Macbook Pro?

    Hi everyone.  I am interested in buying a Samsung Galaxy Ace (Android 2.2 Froyo) but I dont have any idea if its Mac-compatible.  I tried searching the net for answers but can seem to find anything so far...
    Hope you can help me with this issue guys...Thanks!

    DavidGoodnight, I hope FoneSync for Android by Nova Media is the one you are looking for.  Their site says you just search for the app in the Android marketplace, install in your device and it wil just automatically download into your mac after syncing.  I haven't tried it myself because I have given up on buying the Samsung Ace because of compatibility issues but based on feedbacks from other users in this forum, this is the app you are looking for.
    Here is the link for the app: http://www.novamedia.de/en/mac-fonesync-android.html. By the way, the app cannot be used to sync tablets running Android OS 3.x
    I hope this answers your question.

  • Cisco 2900 compatible with VWIC-1MFT-T1?

      Can a VWIC-1MFT-T1 card be used in a 2900 series router?  The compatibility tables on Cisco seem to indicate that it is not compatible, but are not definitive.  Anyone ever tried to put one of these in a 2900?

    No, you need VWIC2-MFT or VWIC3, see the compatibility reference:
    http://www.cisco.com/en/US/products/ps10537/products_relevant_interfaces_and_modules.html
    HTH,
    Chris

  • Does Supervisor Engine 6L-E compatible with Cisco Ws-C4506 Non-E switch?

    Does Supervisor Engine 6L-E compatible with Cisco Ws-C4506 Non-E switch?

    Yes, it is compatible with non-e chassis.
    see below:
    The Cisco Catalyst 4500 Supervisor Engine 6L-E is also compatible with classic Cisco Catalyst 4500 line cards, chassis (3-, 6-, and 7-slot), and power supplies, providing full investment protection.
    link to data sheet:
    http://www.cisco.com/c/en/us/products/collateral/switches/catalyst-4500-series-switches/data_sheet_c78-530856.html
    HTH

  • Lion compatible with Cisco VPN?

    Is Lion compatible with Cisco VPN Client 4.9.01?

    Yes. Boot up in 32 bit mode and the Cisco VPN client 4.9 will work in Lion.
    Restart the mac and hold the 3 and 2 buttons and you'll be in 32 bit mode. The vpn client should work.

  • TCP SYNSEEN with load balancing Cisco ACE 4710

    I have a Cisco ACE 4710 load balancing the traffic to two proxy servers, the configuration is the same since December 2012,  but yesterday it stated to show SYNSEEN in the show conn command, and the hosts cannot browse. I think that means that the three-way-handshake is not complete.
    If I bypass the ACE the hosts can browse without problems. 
    I have tested with another ACE appliance and the same configuration but the behaviour is the same.
    I need help as soon as possible,
    thanks,
    I've attached the Show conn, show conn detail and show run.

    Hi Cesar,
    Thank you for your answer,
    The issue was solved,
    We were running an A3 software version, it seems to have a Bug so it doesn't show the NAT commands in the "show run", so when we made the configuration backup we didn't noticed it.
    The ACE reloaded because an electrical failure so it losted the NAT config.
    We just upgraded to an A4 version and also added a NAT/PAT to enable the communication between the Clients and the Proxy.
    Regards,

  • Is switch HP V1910-24G ''JE006A compatible with cisco components such as power injector and cisco SFP

    Hi everbody,
    I need your hand for this case please :)
    this is first time to design outdoor AP, i will use 1532E due to the price is good, but my question is
    * switch HP V1910-24G ''JE006A'' could be compatible with AIR-PWRINJ-30= & SFP cisco 1 G "glc-sx-mmd"
    I am looking for your advice 

    the power injector will work  but the cisco sfp will not work with the HP switch, also i recommend a switch that is already delivering POE+
     

  • Are 300 Series switches compatible with pre-standard PoE detection in old Cisco phones?

    Are 300 Series switches compatible with pre-standard PoE detection in old Cisco phones? They don't seem to be (a 7902G won't power on when connected to an SF302-08MP with firmware version 1.1). Is any special configuration needed on the switch to enable this detection?

    Please note that the 200 and 300 Series switches now support Cisco Legacy POE as of September 2011, allowing it to deliver power to 7960, 7940, and other pre-standard phones and APs. Details provided at the following link:
    https://supportforums.cisco.com/docs/DOC-18337

  • Need help to Configure Cisco ACE 4710 Cluster Deployment

    Dear Experts,
    I'm newbie for Cisco ACE 4710, and still I'm in learning stage. Meanwhile I got chance at my work place to deploy a Cisco ACE 4710 cluster which should load balance the traffic between  two Application Servers based on HTTP and HTTPS traffic. So I was looking for good deployment guide in Cisco SBA knowledge base then finall found this guide.
    http://www.cisco.com/en/US/docs/solutions/SBA/February2013/Cisco_SBA_DC_AdvancedServer-LoadBalancingDeploymentGuide-Feb2013.pdf
    This guide totally fine with my required deployment model. I have same deployment environment as this guide contains with ACE cluster that connects to two Cisco 3750X (Stack) switches. But I have some confusion places in this guide
    This guide follow the "One-armed mode" as a deployment method. But when I go through it further I have noticed that they have configured server VLAN as a 10.4.49.0/24 (all servers reside in it) and Client side VIP also in same VLAN which is 10.4.49.100/24 (even NAT pool also).
    My confusion is, as I have learned about Cisco ACE 4710 one-armed mode deployment method, it should has two VLAN segments, one for Client side which client request come and hit the VIP and then second one for Server side. which means besically two VLANs. So please be kind enough to go through above document then tell me where is wrong, what shoud I need to do for the best. Please this is an urgent, so need your help quickly.
    Thanks....!
    -Amal-

    Dear Kanwal,
    I need quick help for you. Following are the Application LB requirements which I received from my clinet side.
    Following detail required for configuring Oracle EBS Apps tier on HA:
    LBR IP and Name required to configure EBS APPS Tier (i.e, ap1ebs & ap2ebs nodes)
    Suggested IP and Name for LBR:
    IP : 172.25.45.x [should be on same 172.25.45 subnet of ap1ebs & ap2ebs nodes]
    ebiz.xxxx.lk [on port 80 for http protocol accessibility]
    This LBR IP & name must be resolve and respond on DNS network
    Server Farm detail for LBR Setup
    Following detail will be use for configuring the LBR:
    LBR IP and Name :
    IP : 172.25.45.x [should be on same 172.25.45 subnet of ap1ebs & ap2ebs nodes]
    ebiz.xxxx.lk [on port 80 for http protocol accessibility]
    This LBR IP & name must be resolve and respond on DNS network
    Server Farm Detail for LBR setup:
    Server 1 (EBS App1 Node, ap1ebs):
    IP : 172.25.45.19
    Server Name: ap1ebs.xxxx.lk [ap1ebs hostname is an example, actual hostname will be use]
    Protocol: http
    Port: 8000
    Server 2 (EBS App2 Node, ap2ebs):
    IP : 172.25.45.20
    Server Name: ap2ebs.xxxx.lk [ap2ebs hostname is an example, actual hostname will be use]
    Protocol: http
    Port: 8000
    Since my client needs to access URL ebiz.xxxx.lk which should be resolved by IP 172.25.45.21 (virtual IP) via http (80) before they deploy the app on the two servers I just ran web service on both servers (Linux) and was trying to access http://172.25.45.21 it was working fine and gave me index.html page. Now after my client has deployed the application then when he tries to access the page http://172.25.45.21 he cannot see his main login page. But still my testing web servers are there on both servers when I type http://172.25.45.21 it will get index.html page, but not my client web login page. What can I do for this ?
    Following are my latest config :
    probe http Get-Method
      description Check to url access /OA_HTML/OAInfo.jsp
      interval 10
      faildetect 2
      passdetect interval 30
      request method get url /OA_HTML/OAInfo.jsp
      expect status 200 200
    probe udp http-8000-iRDMI
      description IRDMI (HTTP - 8000)
      port 8000
    probe http http-probe
      description HTTP Probes
      interval 10
      faildetect 2
      passdetect interval 30
      passdetect count 2
      request method get url /index.html
      expect status 200 200
    probe https https-probe
      description HTTPS traffic
      interval 10
      faildetect 2
      passdetect interval 30
      passdetect count 2
      ssl version all
      request method get url /index.html
    probe icmp icmp-probe
      description ICMP PROBE FOR TO CHECK ICMP SERVICE
    rserver host ebsapp1
      description ebsapp1.xxxx.lk
      ip address 172.25.45.19
      conn-limit max 4000000 min 4000000
      probe icmp-probe
      probe http-probe
      inservice
    rserver host ebsapp2
      description ebsapp2.xxxx.lk
      ip address 172.25.45.20
      conn-limit max 4000000 min 4000000
      probe icmp-probe
      probe http-probe
      inservice
    serverfarm host ebsppsvrfarm
      description ebsapp server farm
      failaction purge
      predictor response app-req-to-resp samples 4
      probe http-probe
      probe icmp-probe
      inband-health check log 5 reset 500
      retcode 404 404 check log 1 reset 3
      rserver ebsapp1 80
        conn-limit max 4000000 min 4000000
        probe icmp-probe
        inservice
      rserver ebsapp2 80
        conn-limit max 4000000 min 4000000
        probe icmp-probe
        inservice
    sticky http-cookie jsessionid HTTP-COOKIE
      cookie insert browser-expire
      replicate sticky
      serverfarm ebsppsvrfarm
    class-map type http loadbalance match-any default-compression-exclusion-mime-type
      description DM generated classmap for default LB compression exclusion mime types.
      2 match http url .*gif
      3 match http url .*css
      4 match http url .*js
      5 match http url .*class
      6 match http url .*jar
      7 match http url .*cab
      8 match http url .*txt
      9 match http url .*ps
      10 match http url .*vbs
      11 match http url .*xsl
      12 match http url .*xml
      13 match http url .*pdf
      14 match http url .*swf
      15 match http url .*jpg
      16 match http url .*jpeg
      17 match http url .*jpe
      18 match http url .*png
    class-map match-all ebsapp-vip
      2 match virtual-address 172.25.45.21 tcp eq www
    class-map type management match-any remote_access
      2 match protocol xml-https any
      3 match protocol icmp any
      4 match protocol telnet any
      5 match protocol ssh any
      6 match protocol http any
      7 match protocol https any
      8 match protocol snmp any
    policy-map type management first-match remote_mgmt_allow_policy
      class remote_access
        permit
    policy-map type loadbalance first-match ebsapp-vip-l7slb
      class default-compression-exclusion-mime-type
        serverfarm ebsppsvrfarm
      class class-default
        compress default-method deflate
        sticky-serverfarm HTTP-COOKIE
    policy-map multi-match int455
      class ebsapp-vip
        loadbalance vip inservice
        loadbalance policy ebsapp-vip-l7slb
        loadbalance vip icmp-reply active
        nat dynamic 1 vlan 455
    interface vlan 455
      ip address 172.25.45.36 255.255.255.0
      peer ip address 172.25.45.35 255.255.255.0
      access-group input ALL
      nat-pool 1 172.25.45.22 172.25.45.22 netmask 255.255.255.0 pat
      service-policy input remote_mgmt_allow_policy
      service-policy input int455
      no shutdown
    ft interface vlan 999
      ip address 10.1.1.1 255.255.255.0
      peer ip address 10.1.1.2 255.255.255.0
      no shutdown
    ft peer 1
      heartbeat interval 300
      heartbeat count 10
      ft-interface vlan 999
    ft group 1
      peer 1
      no preempt
      priority 110
      associate-context Admin
      inservice
    ip route 0.0.0.0 0.0.0.0 172.25.45.1
    Hope you will reply me soon
    Thanks....!
    -Amal-

  • CVP 7.0(2) web service element, is it compatible with WCF

    I'm looking for documentation on the Web Service element in CVP 7.0(2).
    The element specs guide for 7.0 doesn't have any thing on it only the 8.0 guide, what does this mean.
    Should I just build something Java?
    I will be using it with microsoft WCF to pass dialer-voicemail call results to our inhouse database, any advise?
    I know that it is compatible with WSDL or SOAP models but I would like to see usage samples, etc.
    thanks

    I am sure the element specs for CVP 8.0 which describe the Web Service Element are applicable to 7.x. Cisco had not updated that document since 2008 and then it was an Audium document with no Cisco changes. So I think that what you read here about the three "technologies" it can talk to is accurate.
    There is probably more discussion on the use of this element at the CVP Developer's forum.
    I've always rolled my own with Web service calls - using Apache HTTP Client as the transport and JAXB for the parsing and marshaling, but this is because I tackled this problem at CVP 3.0, when there was no Web service element. So I developed an architecture and stayed with it. But I would like to explore the built-in WS element.
    Some samples would be good.
    Regards,
    Geoff

  • Is my Valet M20 compatible with Windows 8.1 - Need to move it from One Laptop to Another

    I currently have my Valet on my old Dell Laptop running Windows 7.  The Dell is ready to crash. I tried to load the Cisco M20 on my laptop running Windows 8 with the Key it seemed fine. I rebooted the laptop now it can't seem to find the software. I guess I have two questions:
    1. Is Valet M20 compatible with Windows 8.1
    if so,
    2. How do I move it from an old laptop to a new one running windows 8.1.
    Thanks!

    If you’re referring to the Linksys Connect Software, it’s not compatible yet with Windows 8.1 so you won’t be able to move it. However you can still manage it using the router’s web-based setup page. For detailed instructions, click here. 

  • Urgent!!! Cisco ACE and asymetric routing assistance needed

    I am wondering if someone can give me pointers on the cisco ACE
    and asymetric routes. I've attached the diagram:
    -Cisco IOS IP address is 192.168.15.4/24 and 4.1.1.4/24
    -Firewall External interface is 192.168.15.1/24,
    -Firewall Internal interface is 192.168.192.1/24,
    -F5_BigIP External interface is 192.168.192.4/24,
    -F5_BigIP Internal interface is 192.168.196.1/24 and 192.168.197.1/24,
    -host_y has IP addresses of 192.168.196.10/24 and 192.168.197.10/24,
    -Checkpoint has static route for 192.168.196.0/24 and 192.168.197.0/24
    pointing to the F5_BigIP,
    -host_y is dual-home to both VLAN_A and VLAN_B with the default
    gateway on host_y pointing to VLAN_A which is 192.168.196.1,
    -host_x CAN ssh/telnet/http/https to both of host_y IP addresses
    of 192.168.196.10 and 192.168.197.10.
    In other words, from host_x, when I try to connect to host_y
    via IP address of 192.168.197.10, the traffics will go through VLAN_B
    but the return traffics will go through VLAN_A. Everything
    is working perfectly for me so far.
    Now customer just replaces the F5_BigIP with Cisco ACE. Now,
    I could not get it to work with Asymetric route with Cisco ACE. In
    other words, from host_x, I can no longer ssh or telnet to host_y
    via IP address of 192.168.197.10.
    Anyone knows how to get asymetric route to work on Cisco ACE?
    Thanks in advance.

    That won't work because ACE uses the vlan id to distinguish between flows.
    So when the response comes back on a different vlan, ACE can't find the flow it belongs to and it drops it.
    Even if we could force it to accept the packet, ACE would then try to create a new flow for this packet and it will collide with the flow already existing on the frontend.
    You would need to force your host to respond on the same vlan the traffic came in.
    This could be done with client nat on ACE using different nat pool.
    Gilles.

Maybe you are looking for

  • Is a 1st generation iPod nano compatibale with iTunes 12?

    I have a 1st gen iPod Nano (lucky me, but I like it).  After downloading iTunes 12 the iPod will not sync with iTunes.  Uninstalled and reinstalled iTunes.  That did not work.  Called Apple and they said the iPod may not be compatible with iTunes 12.

  • Information Regarding ALE

    hi folks...            i haev a requirement regarding ALE configuration...reqirement goes like this....once you create sales order in Va01, the daet should go to other SAP system through IDOCS automatically/....is it possible..if so can any one help

  • Omfg i'm new please help me

    i've jsut recently got the e65 well for the past week my bills ahve been flying through the roof, right now it's about $100+ i'm assuming my phone is being picked up by my wireless router and my downloads use the bandwidth from the e65 i make this as

  • How to find number of Threads

    Hi, How do I know how many threads my are running in my application. Thanks --j                                                                                                                                                                           

  • Mp4 files as reference movie only?

    Hi I have several mp4 files created out of a PPro sequence. It's impossible to use QTPro to either export (result is not playable / all white 8KB file), save as (both Self Contained & Reference movie options show to be 13 KB), edit (clipboard empty a