Forum Discussion
Dynamic DNS address registration via APM
SSL-VPN with APM 12.1, assigning client IPs via a lease pool on the APM. Now I want to register the clients in an AD integrated DNS zone => Access Profile / DNS/Hosts / Register this connection's addresses in DNS.
1) There seems to be no possibility to enter domain credentials for the DNS registration, so I would have to allow "nonsecure" updates in the Windows DNS zone, which I do not want, as anybody could then update stuff. => Any way to send "secure" updates from the APM?
2) A Windows integrated DHCP could do "secure" updates, but there seems to be no way to use an external DHCP server for client address assignment. => Any way to use an external DHCP?
29 Replies
- sro_302855
Nimbostratus
Hello,
I have the same issue and the same behaviour. However I need exactly the same need, I have an Infoblox. And for one program, I need to check IP address and hostname. Currently, I have found no solution. Do you have open a issue on F5 support?
Thanks Thanks
- dirken
Nimbostratus
I didn't open an F5 case yet, but I will probably do so, soon.
- kunjan_118660
Cumulonimbus
Have you tried the option 'Register this connection's addresses in DNS' under DNS/Hosts?
- dirken
Nimbostratus
Sure, but as there is no way to configure credentials, you must allow non-secure updates on the DNS server, which is a no-go in our environment.
- sro_302855
Nimbostratus
In my case I just need a non secure DNS update but these option doesn't work, I have no DNS packet sent by f5.
- sro_302855
Nimbostratus
DNS packet with opcode UPDATE
- kunjan
Nimbostratus
Have you tried the option 'Register this connection's addresses in DNS' under DNS/Hosts?
- dirken
Nimbostratus
Sure, but as there is no way to configure credentials, you must allow non-secure updates on the DNS server, which is a no-go in our environment.
- sro_302855
Nimbostratus
In my case I just need a non secure DNS update but these option doesn't work, I have no DNS packet sent by f5.
- sro_302855
Nimbostratus
DNS packet with opcode UPDATE
- kunjan
Nimbostratus
Th dynamic DNS update is done by the Windows, APM just enables option in the RAS adapter.
- M_Quevedo
Nimbostratus
Use Windows Server DHCP to assign the client addresses and also update DNS using this solution:
Get IP Addresses from DHCP For APM VPN Clients / Network Access Tunnels (link)
- JustinH
Nimbostratus
Is there anyway to get the solution to work with multiple partitions?
- M_Quevedo_64392Historic F5 Account
Use Windows Server DHCP to assign the client addresses and also update DNS using this solution:
Get IP Addresses from DHCP For APM VPN Clients / Network Access Tunnels (link)
- JustinH
Nimbostratus
Is there anyway to get the solution to work with multiple partitions?
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
