Forum Discussion
F5 ADFS Deployment
If you reduce the idle timeout on access policy to 10 seconds, user accessing to another ressource is not allowed to access ADFS server anymore.
If you ADFS connections are identified as LTM+APM, they not hit CCU limit but Access Session limit.
Connections coming from Microsoft must be ActiveSync connection as ActiveSync is not ADFS compliant. microsoft act as client of ADFS to check authentication. If you have the list of IP adresses of Microsoft servers, create a variable assign to change value of session.inactivity_timeout variable based on source address.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com