Forum Discussion
Brian_Mayer_841
Nimbostratus
Nov 06, 2007Client authentication bypass for internal IPs
Hi,
We are getting ready to implement the LTM Advanced Client Authentication module to authenticate some test users that will access our new sites behind the F5 LTMs. That should be pretty straightforward. However, during a design meeting today, it was noted that there will be some intersystem communication between servers within our network.
For example, one of the server will call another URL through the F5 to retrieve a web page, but we don't want the Advanced Client Authentication to occur for these hosts. Is there any way using iRules (or any other method) to bypass the LTM ACA on certain virtual servers?
Thanks!
B
3 Replies
- Brian_Mayer_841
Nimbostratus
Yeah I see what you mean. - Brian_Mayer_841
Nimbostratus
Another thing I just thought of...any way to use the iRule for cookie-based authentication on this page: - Brian_Mayer_841
Nimbostratus
Do you think the cookie route is cleaner? The method setting the TMM_AUTH variable to 0 seemed okay too...just want to know which would have the least chance of impacting the users. Is injecting cookies for authentication potentially problematic?
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects