Forum Discussion
daremigio_19877
Nimbostratus
Sep 06, 2015Can i assign multiple Roles in a Remote Role Group when integrating Active Directory with BIG-IP?
Hi All,
I'm integrating the Active Directory with the BIG-IP system (11.6.0 HF5) in order to use it as a remote authentication to manage the BIG-IP box. However, our client has a requirement of ...
Seth_Cooper
Employee
Sep 08, 2015Hi,
You can only have one role for a user in the remote role groups. Your best bet is to give the user the role with that covers what abilities they need to perform without giving them extra. You could also create multiple accounts per user (eg. user1_cert, user1_user, user1_audit) and then they can login with the user they need to perform their duties.
When you setup remote auth the only 2 users that will still auth locally are root (CLI) and admin (GUI). All other users will be sent to the remote auth for authentication.
Seth
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects