Forum Discussion
Can i assign multiple Roles in a Remote Role Group when integrating Active Directory with BIG-IP?
Hi,
You can only have one role for a user in the remote role groups. Your best bet is to give the user the role with that covers what abilities they need to perform without giving them extra. You could also create multiple accounts per user (eg. user1_cert, user1_user, user1_audit) and then they can login with the user they need to perform their duties.
When you setup remote auth the only 2 users that will still auth locally are root (CLI) and admin (GUI). All other users will be sent to the remote auth for authentication.
Seth
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com