Forum Discussion
APM SSO re-authenticates after Inactivity timeout 900 seconds.
I think your need is SAML...
a SAML IdP server (Not F5 APM, search for shibboleth) which authenticate users for 24h a SAML SP server (F5 APM) which redirect users to IdP sever if session is not present.
If IdP server receive a request for an existing user session, it will redirect user to the APM with the SAML assertion allowing APM to create a session seamlessly.
This allow you to manage user authentication timeout on IdP to 24h and on SP to 900 seconds...
The only one limitation is APM does not know user password, NTLM SSO is not available in this case and must be replace by Kerberos Contraint Delegation (Kerberos SSO)
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
