Forum Discussion
AD auth in APM (protocol used)
Hello,
Regarding Active Directory and APM for authentication APM supports Kerberos and for queries APM supports LDAP. As far as increasing security you could use LDAPS, but then you would configure an LDAPS AAA instead of an Active Directory AAA.
Here is some more info on Active Directory and LDAP with APM:
Hello Dave
In APM policy does it mean
AD authentication : uses Kerberos
AD query : uses LDAP
There's vulnerability with LDAP and Microsoft advised to use LDAPS in this article , So i guess I need only to change AD query with LDAP query "signing enabled" and leave the AD authentication as it is to overcome that vulnerability, Right?
- Dave_WNov 26, 2019
Employee
Hello Malak,
Go into the LDAP AAA object and set it to "Use Pool." Then under "Mode" you can set it to LDAPS and you should see a Server SSL profile drop down menu.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
