Skip to main content

Targeting the F5 Networks BigIP TMOS Network Load Balancer 9.x+ system

For each F5 Networks BigIP TMOS Network Load Balancer 9.x+ system, add a target system in Bravura Security Fabric (Manage the System > Resources > Target systems).

  • Type is F5 Networks BigIP TMOS Network Load Balancer 9.x+ (SSH).

  • Address uses options described in the table below.

The full list of target parameters is explained in Target System Options .

Table 1. F5 Networks BigIP TMOS Network Load Balancer 9.x+ (SSH) address configuration

Option

Description

Options marked with a redstar.png are required.

Script file redstar.png

Must be set to agtbigip-9x.psl

(key: script)

Server redstar.png

The IP address/domain name of the F5 Networks BigIP TMOS Network Load Balancer 9.x+ server.

(key: server)

Target system’s internal hostname redstar.png

This is the internally-defined host name that, along with the logged in user’s name, comprises the F5 Networks BigIP TMOS Network Load Balancer 9.x+ prompt. The script generates the expected prompt using this value, then uses the generated prompt to know when commands have completed.

(key: name)

Advanced

Port

TCP Port number. Default is 22.

(key: port)

Compression

Select to enable data compression for SSH connections. Default is false.

(key: compression)

Action for host keys

Select AllowAppend (default) or DenyUnmatch. For new targets, AllowAppend is recommended.

AllowAppend connects to SSH hosts whose public host keys have been previously recorded and have not been changed, and to SSH hosts whose keys have not been previously recorded. It will reject SSH hosts whose keys were previously recorded but have changed.

DenyUnmatch only connects to SSH hosts whose public host keys have been previously recorded and have not been changed. It will reject SSH hosts whose keys have not been previously recorded or were previously recorded but have changed.

(key: hostkeys)

Host keys file

Specify the name of the public host key file. It must be located in the \<instance>\script\ directory.

(key: file)

Authentication key file

This is a generic SSH target field that is ignored for F5 Networks BigIP TMOS Network Load Balancer 9.x+ target systems. Login must be done with username and password.

Timeout for connection

Amount of time the connector will wait for a response.

(key: timeout)

Enable SSH v1?

To enable SSH connection via SSH protocol version 1.

(key: enable_ssh_1)