Forum Discussion
Configure APM for OAuth 2.0 and Active Directory authentication
Hi, I would like to configure APM to play the role of an authorization server using OAuth 2.0 and OpenID Connect protocols. I would also like the authentication to be made using Active Directory, inside our corporate network. Since APM allows to authenticate with AzureAD, I assume this is possible but how?
Thank you
- THi
Nimbostratus
APM can be OAuth 2.0 authorization server at least since sw version 13. OpenId Connect Client and Resource server roles were supported in sw 13.1. I have used the functionality a couple of times with AD and also chaining to SAML federation.
OpenID Connect authorization server (OIDC Provider) support came with the recent sw version 14.0, which I haven't had time to look at yet.
There is documentation in AskF5, but I'm still trying to find it for the OIDC Provider (authorization server) part, though. One has to have understanding of how OAuth 2.0/OIDC flows work as the documentation is note very clear for a beginner. There are quite a few things to configure and a lot of new terminology. I learned it more or less by trial and error, and reading OIDC tutorials, so a lab to test helps.
See (v14 documentation):
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com