Forum Discussion
NiHo_202842
Jun 30, 2015Cirrostratus
Cannot get domain in iRule after APM logon page
Hi all.
I'm trying to get the domain forest out of the user logon.
I enabled 'split domain' on the APM logon page, added a None-type domain field with domain session variable but session.logon.la...
- Jun 30, 2015
Don't really get the iRule used here.
If you enable split domain, basically the logon agent will break the logon.last.logonname to logon.last.username and logon.last.domain. So user might enter the logonname like
oruser@mydomain.loc
mydomain.loc\user
kunjan_118660
Jun 30, 2015Cumulonimbus
Don't really get the iRule used here.
If you enable split domain, basically the logon agent will break the logon.last.logonname to logon.last.username and logon.last.domain. So user might enter the logonname like
user@mydomain.loc
or mydomain.loc\user
- NiHo_202842Jun 30, 2015CirrostratusThe irule is used to check the username against a data group for whitelisting purposes on top of AD authentication that is done by APM. Logging shows that logon.last.domain is empty.
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects