Forum Discussion
Airwatch and F5 APM
Hi, I had a fully managed iPhones from Airwatch and need to do the following: User had company e-mail on the phone and in these e-mails there are https links to internal company Sharepoint sites. When a user click on the link he should be able to access the Sharepoint without being asked for username and password.
The idea is to use user certificate on the phone and then Kerboros Constrained Delegation to allow user to acces the Sharepoint.
What is the best solution that can make this to work?
2 Replies
- Vijay_E
Cirrus
Have you explored APM ?
- FI_2016_187929
Nimbostratus
This article should give you the details to configure Constrained Delegation. Instead of Logon Page, use Client Cert Inspection, Safari should present the certificate to APM. You may need a variable assign to get the username from the certificate.
https://devcentral.f5.com/articles/apm-cookbook-single-sign-on-sso-using-kerberos
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com