Use Case 3: Log MSSQL transactions in transparent mode
Summary of configuration tasks
-
Configure the NetScaler appliance as the default gateway for both clients and servers.
-
Do one of the following on the NetScaler appliance:
-
Configure the use source IP address (USIP) option globally: Create a load balancing virtual server with a wildcard IP address and the port number on which the MSSQL servers listen for requests (a port-specific wildcard virtual server). Then, enable the USIP option globally. If you configure a port-specific wildcard virtual server, you do not have to create MSSQL services on the appliance. The appliance discovers the services based on the destination IP address in the client requests.
-
If you do not want to configure the USIP option globally: Create MSSQL services with the USIP option enabled on each of them. If you configure services, you do not have to create a port-specific wildcard virtual server.
-
-
Configure audit logging, AppFlow®, or Action Analytics to log or collect statistics about the requests. If you configure a virtual server, you can bind your policies either to the virtual server or to the global bind point. If you do not configure a virtual server, you can bind your policies to only the global bind point.
Configure transparent mode by using a wildcard virtual server
Create a wildcard virtual server by using the CLI
add lb vserver <name> <serviceType> <IPAddress> <port>
show lb vserver <name>
> add lb vserver wildcardLbVs MSSQL * 1433
Done
> show lb vserver wildcardLbVs
wildcardLbVs (*:1433) - MSSQL Type: ADDRESS
State: UP
. . .
Done
>
Create a wildcard virtual server by using the GUI
Enable Use Source IP (USIP) mode globally by using the CLI
enable ns mode USIP
show ns mode
> enable ns mode USIP
Done
> show ns mode
Mode Acronym Status
------- ------- ------
. . .
3) Use Source IP USIP ON
. . .
Done
>
Enable USIP mode globally by using the GUI
-
Navigate to System > Settings and, in Modes and Features, select Configure Modes.
-
Select Use Source IP.
Configure transparent mode by using MSSQL services
Create an MSSQL service and enable USIP mode on the service by using the CLI
add service <name> (<IP> | <serverName>) <serviceType> <port> -usip YES`
show service <name>
Example
> add service myDBservice 192.0.2.0 MSSQL 1433 -usip YES
Done
> show service myDBservice
myDBservice (192.0.2.0:1433) - MSSQL
State: UP
. . .
Use Source IP: YES Use Proxy Port: YES
. . .
Done
>
Create an MSSQL service, with USIP enabled, by using the GUI
-
Navigate to Traffic Management > Load Balancing > Services, and configure a service.
-
Specify the protocol as MSSQL and, in Settings, select Use Source IP.