Forum Discussion
Exchange iapp 1.6.0 login link options do not work
Just implemented APM with the latest Exchange iapp 1.6.0 and customized the login page using the F5 (example 1) template.
All is good but the links on the customized login page do nothing. - Show explanation does not expand public and private to explain - selecting Use the Lightweight version of app does not use the lightweight version of OWA.
I have gone through the steps 2 times, each ends up the same. The login page looks good, apm works to authenticate but the links on the page do now work.
11 Replies
- mikeshimkus_111Historic F5 Account
Hi, can you send me the link to the customization example you used? Which version of Exchange are you using? If it's 2016, did you enable the public/private and full/light options on the Exchange servers?
- The-messenger
Cirrostratus
Thanks - here is the link https://devcentral.f5.com/wiki/GetFile.aspx?Page=APM.APM-Advanced-Customization-Templates&File=template-1.zip
We're running Exchange 2010, yes full/light options are enabled. If I go directly to any CAS, the links and selections work as expected.
- mikeshimkus_111Historic F5 Account
None of those templates have been tested with the iApp. When you deployed the iApp, did you create the APM access profile first and then select it, or did you use the iApp to create the access profile? I recommend creating the access profile first, since your customizations will be overwritten every time you reconfigure the iApp (if you let it create the profile for you).
- The-messenger
Cirrostratus
When I deployed the iApp, I let the iApp create the access profile, unchecked strict updates, then customized the access policy. I guess in that case there's no reason to use the iApp at all. It would be more trouble to use the iApp and configure APM separately.
So, the only way I can get the links to work would be to start all over, configure APM separately?
- mikeshimkus_111Historic F5 Account
APM is very complicated. There's no way we can offer all possible configurations you might want to use, that's why we offer the ability to create and attach a pre-existing profile/policy. That way the modifications won't be stomped on when you want to make a change to any of the many other options in the iApp.
You don't necessarily need to start all over, you can make a copy of the access profile that was created by the iApp. You'd have to manually create a few APM objects, such as the AAA server and SSO objects that the access policy points to. You could then re-run the iApp template and point it at the copy of the original iApp-created access profile.
- The-messenger
Cirrostratus
mikeshimkus,
I appreciate your reply and help! I got back to this now, started creating a new access profile. When I copy the one created by the iapp, it is still associated with the application.
- how do I remove the application connection to the new profile
- is there documentation on creating a profile to use with the iapp?
Thanks!
- The-messenger
Cirrostratus
A specific piece of the profile that I'm stuck on is the Configuration\Microsoft Exchange setting. The copied profile has exch_exchange which is created by the iapp. I can set it to the default exchange but I can't find this configuration to create a new one for my profile.
- mikeshimkus_111Historic F5 Account
To view it in the GUI, go to Access Policy ›› Application Access : Microsoft Exchange. From tmsh, it's "list apm profile exchange".
- The-messenger
Cirrostratus
I've created an access policy, applied through the iapp configuration. No customization yet. After a successful login I'm taken to the OWA login page, to login again. I've checked compared my SSO config, it is the same. For testing I applied the SSO config created by the iapp, still the same.
- mikeshimkus_111Historic F5 Account
If you have more than one pool member, try disabling all but one and then login again.
We have seen issues in the past where a certificate mismatch between Exchange servers has causes login problem.
If that doesn't have an effect, it would be helpful to see the output of /var/log/apm in debug mode while you are seeing the issue.
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com