Let's say SRX is connected to external F5-WAF so all traffic that want go to Server will go through WAF first. The F5-WAF is not inline setup and it just have one link only to SRX. So my question is it need PBR on SRX? If need PBR then is it mandatory L3 routing between SRX to F5-WAF or it can be layer 2 (i mean F5-WAF is same segment with server).
Thanks and appreciate anyone experienced here for this kind of setup.