Skip to main content

Install, Configure, and Upgrade Guide for 26.x (SaaS)

NEN Integration with Load Balancers

This section describes how to create a security policy and apply those policies on the load balancers for use with the NEN.

Load Balancer Concepts

  • Load balancer (SLB): Either a physical machine or a virtual machine performing load balancing functions. An SLB object represents a standalone device or an HA Pair and includes management of IP/port, user/password, and so on. These values are used by an Illumio NEN to read information from and manage the device. In case of HA, it may include multiple SLB devices.

  • Illumio Virtual Server: The same as a load balancer Virtual Server.

  • Discovered Virtual Server: An Illumio NEN queries the load balancer for VIPs and specifies the client-facing VIP with port + protocol combination.

  • Created Virtual Server: Is a provisionable policy object with labels used in policy writing. In the UI, the Virtual Server creation process is called VIP Management. Virtual Server providers (backend servers) are specified using labels and can optionally specify backend port independently of the port used by the VIP.

    • VIP: Is a virtual IP or a local IP (a front-end IP that clients can connect to).

  • SNAP pool: Is a group of IPs that the Virtual Servers use to connect to the backend servers. A Virtual Server can only have a single VIP connected to it, on a single port. It can also be accessed by the SLBs local IPs.

Supported Load Balancers

  • F5 BIG-IP 11.5x or later

  • AVI Vantage 18.23 or later

  • Citrix ADC (NetScaler) 13.1 or later