Forum Discussion
Can i assign multiple Roles in a Remote Role Group when integrating Active Directory with BIG-IP?
Hi Seth,
Thank you for the information. However, our client's AD administrator doesn't allow multiple usernames for a single user and therefore the suggestion of creating multiple usernames for a single user is not possible. Also, the only user role that will be able to do user management, certificate management and audit at the same time is an Administrator role. But the Administrator Role can also create VS,Pool,VLANs,etc. and our client doesn't want that user (ex: jsmith) to also be able to create VS,Pool,VLANs,etc. -_-
So i guess there is no other workaround for this kind of authentication requirements?
- Seth_CooperSep 09, 2015
Employee
Your best bet is to open a case with support and ask to be attached to RFE ID 382849. This enhancement is to allow a more granular way to provision admin privileges. Currently the only workaround I know for this is to have multiple accounts for one user. - daremigio_19877Sep 10, 2015
Nimbostratus
Thank you Seth. Just a follow-up question, you said that the only 2 user that can login locally are the root (CLI) and admin (GUI), does it include local users with an Administrator role?
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com