Tuesday, February 26, 2019

why put the web server behind the F5 LB - should I always?

Hi this is kind of a curiosity noob question.

Do the F5 LB provide a layer of security? So let's say I see a stand-alone web server that can be accessed by the public behind an F5...this server has no monitoring or anything special at all. Not even gateway_icmp... which seems kind of useless by itself anyways.

I was told by someone a long time ago that this provides security...

I'm curious, how does it do that? The only difference is now the server can be accessed through a VIP.. I don't get what the point of putting it behind the LB is if you don't put monitoring or SSL offloading or load-balancing to other servers...it's just a standalone server by itself. Is their anything other than security that it provides in this config?



No comments:

Post a Comment