Forum Discussion
Josh_41258
Oct 21, 2011Nimbostratus
Allow/Block access based on LDAP/AD Query
Hi,
My goal is to create an iRule or other mechanism that would allow or block access to a particular VIP. I'd like to query my Active Directory to see if a user is in a particular OU or Security Group, and allow/block access based on this criteria.
Is this even possible? If so, can someone give me some pointers?
Thanks!
- Michael_YatesNimbostratusHi Josh,
- Josh_41258NimbostratusThanks, looks promising! Can I specify an LDAP object/group/etc that I do NOT want to be able to access a certain VIP? Or, is my only option to specify groups that CAN access the VIP? My ultimate goal needs to allow access to the VIP for everyone EXCEPT members of a certain group/OU/ldap resource/etc.
- Josh_41258NimbostratusThanks, looks promising! Can I specify an LDAP object/group/etc that I do NOT want to be able to access a certain VIP? Or, is my only option to specify groups that CAN access the VIP? My ultimate goal needs to allow access to the VIP for everyone EXCEPT members of a certain group/OU/ldap resource/etc.
- nitassEmployeeis my only option to specify groups that CAN access the VIP?i have never done but i understand the following is applicable.
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects