Skip to content

Commit

Permalink
module 4 corrections
Browse files Browse the repository at this point in the history
  • Loading branch information
f5jason committed Jan 26, 2024
1 parent 70300ce commit 70773ac
Show file tree
Hide file tree
Showing 10 changed files with 30 additions and 20 deletions.
2 changes: 1 addition & 1 deletion docs/class5/module3/lab2.rst
Original file line number Diff line number Diff line change
Expand Up @@ -66,7 +66,7 @@ Now, you will create a simple HTTPS application.
- In the **Pool** field, select the **my-pool** pool.
- Change the **Virtual Port** to ``443`` (default value was **80**)

#. In the **Protocols & Profiles** field, click on the edit icon to open the settings panel.
#. In the **Protocols & Profiles** field, click on the **edit icon** to open the settings panel.

.. image:: ./images/add-app-4.png

Expand Down
Binary file modified docs/class5/module4/images/service-4.png
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Binary file modified docs/class5/module4/images/service-5.png
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Binary file modified docs/class5/module4/images/service-6.png
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Binary file modified docs/class5/module4/images/service-7.png
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Binary file added docs/class5/module4/images/service-8a.png
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Binary file added docs/class5/module4/images/service-8b.png
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Binary file added docs/class5/module4/images/service-9.png
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
42 changes: 26 additions & 16 deletions docs/class5/module4/lab2.rst
Original file line number Diff line number Diff line change
Expand Up @@ -18,16 +18,16 @@ Create an Inline L3 Inspection Service
.. image:: ./images/service-1.png


.. image:: ./images/service-2.png
#. In the **Create Inspection Service** panel, select **Generic Inline L3** and then click the **Start Creating** button.

.. image:: ./images/service-2.png

#. In the **Create Inspection Service** panel, select **Generic Inline L3** and then click the **Start Creating** button to open the configuration settings panel.

#. In the **General Properties** section:
#. In the **General Properties** section of the **Create Inspection Service: 'Generic L3'** panel:

- Enter ``my-sslo-ngfw`` in the service name field.
- Enter ``my-sslo-ngfw`` in the **Name** field.

- Enter ``next-gen firewall`` in the description field (optional).
- Enter ``next-gen firewall`` in the **Description** field (optional).

- Click the **Save & Continue** button.

Expand All @@ -37,9 +37,9 @@ Create an Inline L3 Inspection Service

#. In the **Network** settings:

- Enter ``sslo-insp-l3-in`` in the **To: VLAN** Name field.
- Enter ``sslo-insp-l3-in`` in the **To: VLAN** > **VLAN Name** field.

- Enter ``sslo-insp-l3-out`` in the **From: VLAN** Name field.
- Enter ``sslo-insp-l3-out`` in the **From: VLAN** > **VLAN Name** field.

.. note::
VLAN names are 'SSLO-INSP-L3-IN' and 'SSLO-INSP-L3-OUT' (but lowercase).
Expand All @@ -51,32 +51,42 @@ Create an Inline L3 Inspection Service
.. image:: ./images/service-4.png


#. In the **Inspection Service Endpoints** section above, click the **Start Adding** button.
#. In the **Inspection Service Endpoints** section (between the **To: VLAN** and **From: VLAN** sections), click the **Start Adding** button.

.. image:: ./images/service-5.png

- Enter ``198.19.64.30`` in the **Server Address** field.

.. image:: ./images/service-5.png
.. image:: ./images/service-6.png


#. Click the **Review & Deploy** button.

#. In the **Deploy Inspection Service** panel, add the BIG-IP Next instance.

- Click the **Start Adding** button
- Select the instance named **bigip-next.f5labs.com**.
- Click on the **+ Add to List** button.

.. image:: ./images/service-7.png




- Click the checkbox to the left of the assigned instance and then click the **Validate** button.

.. image:: ./images/service-6.png
.. image:: ./images/service-8a.png


- If Validation is successful, click the **Deploy Changes** button to push this inspection service configuration to the BIG-IP Next instance.

- Click the **Start Adding** button
- Select the instance named **bigip-next.f5labs.com**.
- Click on the **+ Add to List** button.
.. image:: ./images/service-8b.png


- At the **Deploy Inspection Service?** prompt, click on the **Yes, Deploy** button and wait for the task to complete.

|

After deployment, the new inspection service will appear in the list.
After deployment, the new inspection service will appear in the list.

.. image:: ./images/service-7.png
.. image:: ./images/service-9.png

6 changes: 3 additions & 3 deletions docs/class5/module5/lab5.rst
Original file line number Diff line number Diff line change
Expand Up @@ -27,7 +27,7 @@ SSL Orchestrator inspection services, service chain, and traffic policy creation
#. In the **Virtual Servers** box, enter ``my-service`` for the name of your new application
and set the **Virtual Port** to ``443``.

#. In the **Protocols & Profiles** field, click on the edit icon to open the settings panel.
#. In the **Protocols & Profiles** field, click on the **edit icon** to open the settings panel.

#. Enable the **Enable HTTPS (Client-Side TLS)** option to show additional settings.

Expand All @@ -50,7 +50,7 @@ SSL Orchestrator inspection services, service chain, and traffic policy creation
Notice that the **TLS** and **HTTPS** badges were added, and **MIRRORING** was removed.


#. In the **Security Policies** column, click the edit icon to open the **Security Profiles** panel.
#. In the **Security Policies** column, click the **edit icon** to open the **Security Profiles** panel.

#. Enable the **Use an SSL Orchestrator Policy** option and then select your SSL Orchestrator traffic policy.

Expand All @@ -70,7 +70,7 @@ SSL Orchestrator inspection services, service chain, and traffic policy creation

#. In the **Deploy** panel, enter ``0.0.0.0/0`` for the **Virtual Address**. This will create a listener for all incoming addresses.

#. In the **Configure** column, click the edit icon.
#. In the **Configure** column, click the **edit icon**.

#. Enable the **Enable VLANs to listen on** option and select **clientside**.

Expand Down

0 comments on commit 70773ac

Please sign in to comment.