3.1. Login and review the UDF lab hosts and endpointsΒΆ

If needed, review the previous section SSL Orchestrator Lab Environment.

For this lab:

  • Using your web browser (Chrome/Chromium preferred), open a TMUI (HTTPS) session to the SSLO Primary component via UDF.
  • Login as admin with password agility.

Note

There are no additional hands-on steps that need to be taken before proceeding to the next section. The information below is intended to provide additional context regarding how the UDF lab hosts are connected and how they relate to each other.

  • The Ubuntu18.04 Client is attached to the 10.1.10.0/24 network on IP address 10.1.10.50, which is attached to the BIG-IP 1.1 interface for outbound testing. It is also attached to the 10.1.20.0/24 network on IP address 10.1.20.50, which is attached to the BIG-IP 1.2 interface for inbound testing.
  • The L2 device is an Ubuntu 18.04 LTS server configured to bridge its eth1 and eth2 interfaces. Its inbound VLAN (traffic to it) is attached to the BIG-IP 1.4 interface. Its outbound interface (traffic coming from it) is attached to the BIG-IP 1.5 interface.
  • The L3 device is a docker container on Ubuntu 18.04 LTS server, which is configured to route between its ens6.60 and ens.70 (tagged) interfaces. Its inbound VLAN (traffic to it) is attached to the BIG-IP 1.3 (VLAN tag 60) interface and has an IP of 198.19.64.30/25. Its outbound interface (traffic coming from it) is attached to the BIG-IP 1.3 (VLAN tag 70) interface and has an IP of 198.19.64.130/25. Its default gateway is 198.19.64.245, which will be a VLAN self-IP on the BIG-IP.
  • The TAP device is an Ubuntu 18.04 LTS server configured with a single eth1 interface. That interface is attached to the BIG-IP 1.6 interface.
  • The DLP/ICAP device is a docker container on Ubuntu 18.04 LTS server configured with a single eth1 interface. That interface is attached to the BIG-IP 1.3 (VLAN tag 50) interface and has an IP of 198.19.97.50 and listening on port 1344. The box is running c-icap and Squid/Clamav.
  • The Explicit Proxy device is a docker container on Ubuntu 18.04 LTS server configured with Squid. Its interfaces are ens6.30 and ens6.40 (tagged). Its inbound VLAN (traffic to it) is attached to the BIG-IP 1.3 (VLAN tag 30) interface and has an IP of 198.19.96.30/25. Its outbound interface (traffic coming from it) is attached to the BIG-IP 1.3 (VLAN tag 40) interface and has an IP of 198.19.96.130/25. Its default gateway is 198.19.96.245, which will be a VLAN self-IP on the BIG-IP.
  • The outbound network is attached to the BIG-IP 1.2 interface, in the 10.1.20.0/24 subnet, and has a gateway of 10.1.20.1.

Note

In this lab, the client inbound, Internet outbound, and DLP VLANs and self-IPs are already created.